CVE-2008-3832
published 2008-10-03CVE-2008-3832: A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-45 on Fedora 9, allows local users to…
PriorityP414medium4.9CVSS 2.0
AVLACLAuNCNINAC
EXPLOIT
EPSS
0.78%
51.8th percentile
A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-45 on Fedora 9, allows local users to cause a denial of service (NULL pointer dereference and system crash or hang) via a call to the utrace_control function.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | fedora | — | — |
| redhat | fedora | — | — |
CVSS provenance
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
vendor_redhat4.9MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7cqv-rq93-98pp: A certain Fedora patch for the utrace subsystem in the Linux kernel before 2
ghsa_unreviewed·2022-05-02
CVE-2008-3832 [MEDIUM] GHSA-7cqv-rq93-98pp: A certain Fedora patch for the utrace subsystem in the Linux kernel before 2
A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-45 on Fedora 9, allows local users to cause a denial of service (NULL pointer dereference and system crash or hang) via a call to the utrace_control function.
Red Hat
kernel: null pointer dereference in utrace_control
vendor_redhat·2008-10-02·CVSS 4.9
CVE-2008-3832 [MEDIUM] CWE-476 kernel: null pointer dereference in utrace_control
kernel: null pointer dereference in utrace_control
A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-45 on Fedora 9, allows local users to cause a denial of service (NULL pointer dereference and system crash or hang) via a call to the utrace_control function.
Statement: Not vulnerable. This issue did not affect the version of utrace as shipped with the Red Hat Enterprise Linux 5 kernel.
No detection rules found.
http://kerneloops.org/oops.php?number=56705http://www.openwall.com/lists/oss-security/2008/10/02/1http://www.securityfocus.com/bid/31536https://bugzilla.redhat.com/show_bug.cgi?id=464883https://exchange.xforce.ibmcloud.com/vulnerabilities/45644http://kerneloops.org/oops.php?number=56705http://www.openwall.com/lists/oss-security/2008/10/02/1http://www.securityfocus.com/bid/31536https://bugzilla.redhat.com/show_bug.cgi?id=464883https://exchange.xforce.ibmcloud.com/vulnerabilities/45644
2008-10-03
Published