First published: Tue Sep 16 2008(Updated: )
Description of problem: If add_to_page_cache_lru() fails, the page will not be locked. But splice jumps to an error path that does a page release and unlock, causing a BUG() in unlock_page().
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | =2.6.18-rc3 | |
Linux Linux kernel | =2.6.18-rc2 | |
Linux Linux kernel | =2.4.36.6 | |
Linux Linux kernel | =2.6.18-rc5 | |
Linux Linux kernel | =2.6.18-rc4 | |
Linux Linux kernel | =2.6.21.6 | |
Linux Linux kernel | =2.4.36.2 | |
Linux Linux kernel | =2.6.20.16 | |
Linux Linux kernel | =2.6.19.4 | |
Linux Linux kernel | =2.6.20.21 | |
Linux Linux kernel | =2.4.36.1 | |
Linux Linux kernel | <=2.6.22.1 | |
Linux Linux kernel | =2.6.20.17 | |
Linux Linux kernel | =2.6.21.5 | |
Linux Linux kernel | =2.4.36.4 | |
Linux Linux kernel | =2.6.20.20 | |
Linux Linux kernel | =2.4.36.3 | |
Linux Linux kernel | =2.6.20.18 | |
Linux Linux kernel | =2.6.19.7 | |
Linux Linux kernel | =2.6.20.19 | |
Linux Linux kernel | =2.6.21.7 | |
Linux Linux kernel | =2.6.18-rc7 | |
Linux Linux kernel | =2.4.36 | |
Linux Linux kernel | =2.6.19.6 | |
Linux Linux kernel | =2.6.18-rc6 | |
Linux Linux kernel | =2.6.19.5 | |
Linux Linux kernel | =2.6.18 | |
Linux Linux kernel | =2.4.36.5 | |
Linux Linux kernel | =2.2.27 | |
Linux Linux kernel | =2.6.18-rc1 | |
Linux Linux kernel | =2.6 | |
Linux Linux kernel | <2.6.22.2 | |
Debian Debian Linux | =4.0 | |
Redhat Enterprise Linux | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4302 is a vulnerability in the Linux kernel that allows local users to cause a denial of service (kernel bug and system crash).
The severity of CVE-2008-4302 is high with a CVSS score of 4.9.
CVE-2008-4302 impacts Linux kernel versions before 2.6.22.2.
To fix CVE-2008-4302, it is recommended to update to Linux kernel version 2.6.22.2 or later.
You can find more information about CVE-2008-4302 at the following references: [http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.26.y.git;a=commit;h=6a860c979b35469e4d77da781a96bdb2ca05ae64](http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.26.y.git;a=commit;h=6a860c979b35469e4d77da781a96bdb2ca05ae64), [http://www.openwall.com/lists/oss-security/2008/09/16/10](http://www.openwall.com/lists/oss-security/2008/09/16/10), [http://lkml.org/lkml/2007/7/20/168](http://lkml.org/lkml/2007/7/20/168).