>> Linux Kernel "hrtimer_start()" Function Local Integer Overflow Vulnerability
Title : Linux Kernel "hrtimer_start()" Function Local Integer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2007-4225 CVE ID : CVE-2007-5966
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2007-12-17
Technical Description
A vulnerability has been identified in Linux Kernel, which could be exploited by local attackers to cause a denial of service or potentially obtain elevated privileges. This issue is caused by an error in the "hrtimer_start()" [kernel/hrtimer.c] function when handling large relative timeout values, which could be exploited by malicious users to panic a vulnerable system or potentially execute arbitrary code with elevated privileges.