CVE-2005-3356: Low severity Linux Linux kernel vulnerability
The mqopen system call in Linux kernel 2.6.9, in certain situations, can decrement a counter twice ("double decrement") as a result of multiple calls to the mntput function when the dentryopen function call fails, which allows local users to cause a denial of service (panic) via unspecified attack vectors.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3356?
CVE-2005-3356 has a high severity rating due to its potential to cause a denial of service (panic) in the affected systems.
How do I fix CVE-2005-3356?
To fix CVE-2005-3356, you should upgrade your Linux kernel to a version above 2.6.20 where this vulnerability is addressed.
Which Linux kernel versions are affected by CVE-2005-3356?
CVE-2005-3356 primarily affects Linux kernel version 2.6.9 up to 2.6.20.
What kind of attack does CVE-2005-3356 allow?
CVE-2005-3356 allows local users to cause a denial of service by exploiting the double decrement issue in the mq_open system call.
Who can exploit CVE-2005-3356?
CVE-2005-3356 can be exploited by local users with access to the affected systems.