First published: Sat May 27 2006(Updated: )
Race condition in Linux kernel 2.6.15 to 2.6.17, when running on SMP platforms, allows local users to cause a denial of service (crash) by creating and exiting a large number of tasks, then accessing the /proc entry of a task that is exiting, which causes memory corruption that leads to a failure in the prune_dcache function or a BUG_ON error in include/linux/list.h.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux kernel | =2.6.16.16 | |
Linux kernel | =2.6.16.9 | |
Linux kernel | =2.6.15.3 | |
Linux kernel | =2.6.16.6 | |
Linux kernel | =2.6.16.8 | |
Linux kernel | =2.6.16-rc6 | |
Linux kernel | =2.6.16-rc1 | |
Linux kernel | =2.6.16.18 | |
Linux kernel | =2.6.16.13 | |
Linux kernel | =2.6.16.4 | |
Linux kernel | =2.6.16.15 | |
Linux kernel | =2.6.15.6 | |
Linux kernel | =2.6.15.1 | |
Linux kernel | =2.6.16.1 | |
Linux kernel | =2.6.17 | |
Linux kernel | =2.6.16.11 | |
Linux kernel | =2.6.16.14 | |
Linux kernel | =2.6.16-rc5 | |
Linux kernel | =2.6.16.3 | |
Linux kernel | =2.6.17-rc3 | |
Linux kernel | =2.6.16-rc4 | |
Linux kernel | =2.6.17-rc1 | |
Linux kernel | =2.6.17-rc2 | |
Linux kernel | =2.6.16 | |
Linux kernel | =2.6.15.2 | |
Linux kernel | =2.6.16.10 | |
Linux kernel | =2.6.15.4 | |
Linux kernel | =2.6.16.17 | |
Linux kernel | =2.6.16.12 | |
Linux kernel | =2.6.16.2 | |
Linux kernel | =2.6.15 | |
Linux kernel | =2.6.16-rc3 | |
Linux kernel | =2.6.16.7 | |
Linux kernel | =2.6.17-rc4 | |
Linux kernel | =2.6.16.5 | |
Linux kernel | =2.6.15.5 | |
Linux kernel | =2.6.16-rc2 | |
Linux kernel | =2.6.17-rc5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2629 is classified as a high severity vulnerability due to its potential to cause a denial of service on affected Linux kernel versions.
To fix CVE-2006-2629, upgrade to a patched version of the Linux kernel that is above 2.6.17.
Local users operating on SMP platforms running Linux kernel versions 2.6.15 through 2.6.17 are affected by CVE-2006-2629.
The impact of CVE-2006-2629 is a denial of service that may cause the system to crash due to memory corruption.
CVE-2006-2629 was publicly disclosed in May 2006.