ID:10289 - Exploit for Resource management errors in Linux kernel - CVE-2006-2451

 
Main Vulnerability Database Exploits ID:10289 - Exploit for Resource management errors in Linux kernel - CVE-2006-2451

ID:10289 - Exploit for Resource management errors in Linux kernel - CVE-2006-2451

Published: August 2, 2024


Vulnerability identifier: #VU95231
Vulnerability risk: Low
CVE-ID: CVE-2006-2451
CWE-ID: CWE-399
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to read and manipulate data.

The suid_dumpable support in Linux kernel 2.6.13 up to versions before 2.6.17.4, and 2.6.16 before 2.6.16.24, allows a local user to cause a denial of service (disk consumption) and possibly gain privileges via the PR_SET_DUMPABLE argument of the prctl function and a program that causes a core dump file to be created in a directory for which the user does not have permissions.


Remediation

Install update from vendor's repository.