Back to search
CVE-2014-0203
Published: Jun 23, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
The __do_follow_link function in fs/namei.c in the Linux kernel before 2.6.33 does not properly handle the last pathname component during use of certain filesystems, which allows local users to cause a denial of service (incorrect free operations and system crash) via an open system call.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
59262
third-party-advisory
x_refsource_SECUNIA
68125
vdb-entry
x_refsource_BID
59309
third-party-advisory
x_refsource_SECUNIA
59406
third-party-advisory
x_refsource_SECUNIA
http://mirror.linux.org.au/linux/kernel/v2.6/ChangeLog-2.6.33
x_refsource_CONFIRM
http://linux.oracle.com/errata/ELSA-2014-0771.html
x_refsource_CONFIRM
59560
third-party-advisory
x_refsource_SECUNIA
http://linux.oracle.com/errata/ELSA-2014-3043.html
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=1094363
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now