Back

HIGH

kernel: clock_nanosleep() with CLOCK_MONOTONIC_RAW NULL pointer dereference

Published Aug 14, 2009

Description

The init_posix_timers function in kernel/posix-timers.c in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (OOPS) or possibly gain privileges via a CLOCK_MONOTONIC_RAW clock_nanosleep call that triggers a NULL pointer dereference.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue only affected kernels version 2.6.28-rc1 and later. Therefore this issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3, 4, 5 or Red Hat Enterprise MRG..

Metrics

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 14, 2009
Updated Aug 7, 2024
Reserved Aug 14, 2009
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Aug 3, 2009