>> Linux Kernel "__keyring_search_one()" Local Denial of Service Vulnerability
Title : Linux Kernel "__keyring_search_one()" Local Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2006-1307 CVE ID : CVE-2006-1522
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2006-04-11
Technical Description
A vulnerability has been identified in Linux Kernel, which could be exploited by local attackers to cause a denial of service. This flaw is due to an error in the "__keyring_search_one()" function that does not properly validate "keyctl" requests when adding a key to a non-keyring key, which could be exploited by malicious users to cause a denial of service.