cbcvebase.
CVE-2013-4312
published 2016-02-08

CVE-2013-4312: The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by sending each descriptor…

medium6.2CVSS 3.0
AVLACLPRNUINSUCNINAH
The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by sending each descriptor over a UNIX socket before closing it, related to net/unix/af_unix.c and net/unix/garbage.c.

Affected

16 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 4.4.4-1 (bookworm)linux 4.4.4-1 (bookworm)
debianlinux< linux 4.3.3-6 (bookworm)linux 4.3.3-6 (bookworm)
linuxlinux_kernel<= 4.4.8
linuxlinux_kernel<= 4.4
linuxlinux_kernel>= 0 < 4.4.4-14.4.4-1
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 4.4.4-14.4.4-1
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 4.4.4-14.4.4-1
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 4.4.4-14.4.4-1
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 3.13.0-83.1273.13.0-83.127
oraclelinux
oraclelinux
oraclelinux

CVSS provenance

nvdv3.06.2MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv6.2MEDIUM