Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-7550
HistoryFeb 08, 2016 - 3:59 a.m.

Race condition

2016-02-0803:59:00
PRIOn knowledge base
www.prio-n.com
7

7.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%

The keyctl_read_key function in security/keys/keyctl.c in the Linux kernel before 4.3.4 does not properly use a semaphore, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted application that leverages a race condition between keyctl_revoke and keyctl_read calls.

CPENameOperatorVersion
linux_kernelle4.3.3

7.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%