First published: Tue Oct 17 2006(Updated: )
The kernel in Red Hat Enterprise Linux 3, when running on SMP systems, allows local users to cause a denial of service (deadlock) by running the shmat function on an shm at the same time that shmctl is removing that shm (IPC_RMID), which prevents a spinlock from being unlocked.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Enterprise Linux | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4342 is classified as a denial of service vulnerability that can lead to system unresponsiveness.
To mitigate CVE-2006-4342, it is recommended to upgrade Red Hat Enterprise Linux to a version that no longer contains this vulnerability.
CVE-2006-4342 affects local users on Red Hat Enterprise Linux 3 systems running on SMP architecture.
CVE-2006-4342 is caused by concurrent access to shared memory segments leading to a deadlock situation.
As a temporary workaround for CVE-2006-4342, avoid simultaneous use of the shmat and shmctl functions on shared memory.