CVE-2009-3547: Null Pointer Dereference
Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privileges by attempting to open an anonymous pipe via a /proc//fd/ pathname.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3547?
CVE-2009-3547 is classified as a denial of service and privilege escalation vulnerability that can cause system crashes.
How do I fix CVE-2009-3547?
To fix CVE-2009-3547, update your Linux kernel to version 2.6.32 or later.
What systems are affected by CVE-2009-3547?
CVE-2009-3547 affects various versions of the Linux kernel prior to 2.6.32, including multiple distributions like Ubuntu, Fedora, and openSUSE.
What are the potential impacts of CVE-2009-3547?
Exploiting CVE-2009-3547 can lead to a system crash or allow local users to gain elevated privileges.
Is CVE-2009-3547 a remote or local vulnerability?
CVE-2009-3547 is a local vulnerability that requires authenticated access to exploit.