Back

MEDIUM

kernel: Processes having the same group as `init` can crash kernel

Published Feb 6, 2017

Description

include/linux/init_task.h in the Linux kernel before 2.6.35 does not prevent signals with a process group ID of zero from reaching the swapper process, which allows local users to cause a denial of service (system crash) by leveraging access to this process group.

Affected products

Remediation

Red Hat statement

This flaw affects Red Hat Enteprise Linux 5 and 6 and is not able to be exploited in the default configuration. Administrators would need to replace the init daemon with alternative systems to exploit this system crash correctly. No update is planned to be released for this flaw.

Metrics

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Feb 6, 2017
Updated Aug 7, 2024
Reserved Jan 20, 2017
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date May 27, 2010