ID:10810 - Exploit for Improper locking in Linux kernel - CVE-2004-1016

 
Main Vulnerability Database Exploits ID:10810 - Exploit for Improper locking in Linux kernel - CVE-2004-1016

ID:10810 - Exploit for Improper locking in Linux kernel - CVE-2004-1016

Published: November 5, 2024


Vulnerability identifier: #VU99789
Vulnerability risk: Low
CVE-ID: CVE-2004-1016
CWE-ID: CWE-667
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to perform service disruption.

The scm_send function in the scm layer for Linux kernel 2.4.x up to 2.4.28, and 2.6.x up to 2.6.9, allows local users to cause a denial of service (system hang) via crafted auxiliary messages that are passed to the sendmsg function, which causes a deadlock condition.


Remediation

Install update from vendor's repository.