>> Linux Kernel MinCore User Space Access Locking Local Denial of Service Vulnerability
Title : Linux Kernel MinCore User Space Access Locking Local Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2006-5082 CVE ID : CVE-2006-4814
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2006-12-20
Technical Description
A vulnerability has been identified in Linux Kernel, which could be exploited by local attackers to cause a denial of service. This issue is due to an error in the "mincore()" [mm/filemap.c] function that calls "copy_to_user()" while holding the mmap semaphore for reading, which could be exploited by malicious users to cause a deadlock, creating a denial of service condition.