Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).
Severity
7.2HIGH
EPSS
0.1%
top 68.42%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedAug 14
Latest updateMay 2

Description

The init_posix_timers function in kernel/posix-timers.c in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (OOPS) or possibly gain privileges via a CLOCK_MONOTONIC_RAW clock_nanosleep call that triggers a NULL pointer dereference.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

NVDlinux/linux_kernel2.6.16.31+72
NVDlinux/kernel2.6.24.7, 2.6.25.15+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-j7ff-hmc8-4xc8: The init_posix_timers function in kernel/posix-timers2022-05-02
CVEList
CVE-2009-2767: The init_posix_timers function in kernel/posix-timers2009-08-14

💥Exploits & PoCs

1
Exploit-DB
Linux Kernel 2.6.x - 'posix-timers.c' Null Pointer Dereference Denial of Service2009-08-06

📋Vendor Advisories

2
Ubuntu
Linux kernel vulnerabilities2009-10-22
Red Hat
kernel: clock_nanosleep() with CLOCK_MONOTONIC_RAW NULL pointer dereference2009-08-03

💬Community

1
Bugzilla
CVE-2009-2767 kernel: clock_nanosleep() with CLOCK_MONOTONIC_RAW NULL pointer dereference2009-08-06
CVE-2009-2767 (HIGH CVSS 7.2) | The init_posix_timers function in k | cvebase.io