Vulnerabilities > CVE-2008-3832 - Resource Management Errors vulnerability in Redhat Fedora 8/9

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
redhat
CWE-399
exploit available

Summary

A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-45 on Fedora 9, allows local users to cause a denial of service (NULL pointer dereference and system crash or hang) via a call to the utrace_control function.

Vulnerable Configurations

Part Description Count
OS
Redhat
2
OS
Linux
66

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionFedora 8/9 Linux Kernel 'utrace_control' NULL Pointer Dereference Denial of Service Vulnerability. CVE-2008-3832. Dos exploit for linux platform
idEDB-ID:32451
last seen2016-02-03
modified2008-10-02
published2008-10-02
reporterMichael Simms
sourcehttps://www.exploit-db.com/download/32451/
titleFedora 8/9 Linux Kernel 'utrace_control' NULL Pointer Dereference Denial of Service Vulnerability

Seebug

bulletinFamilyexploit
descriptionCVE: CVE-2008-3832 Fedora 8 and 9 Linux kernel is prone to a local denial-of-service vulnerability. Attackers can exploit this issue to crash the affected kernel, denying service to legitimate users. Given the nature of this issue, attackers may also be able to execute arbitrary code, but this has not been confirmed. Note that this issue does not affect upstream kernel versions. Only the following Fedora distributions are affected: Fedora 8 prior to kernel-2.6.26.5-28 Fedora 9 prior to kernel-2.6.26.5-45 RedHat Fedora 9 0 RedHat Fedora 8 0 Updates are available. Please see the references for more information.
idSSV:4140
last seen2017-11-19
modified2008-10-04
published2008-10-04
reporterRoot
sourcehttps://www.seebug.org/vuldb/ssvid-4140
titleFedora 8/9 Linux Kernel 'utrace_control' NULL Pointer Dereference Denial of Service Vulnerability

Statements

contributorJoshua Bressers
lastmodified2017-08-07
organizationRed Hat
statementNot vulnerable. This issue did not affect the version of utrace as shipped with the Red Hat Enterprise Linux 5 kernel.