Linux Kernel ISO9660 Local Denial of Service

Monday, November 06 2006 @ 01:46 PM EST

Contributed by: sde

LMH has reported a vulnerability in the Linux Kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service).

The vulnerability is caused due to race conditions within the implementation of the ISO9660 file system. This can be exploited to cause an infinite loop in the "isofs_get_blocks()" function by mounting a specially crafted ISO9660 image and performing a read operation on the mounted file system.

Advisory

0 comments



http://www.linuxlinks.com/portal/news/article.php?story=20061106133132118