Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in SELinux 2.6.x through 2.6.9 allows local users to cause a denial of service (kernel crash) via SOCK_SEQPACKET unix domain sockets, which are not properly handled in the sock_dgram_sendmsg function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NSA SELinux SOCK_SEQPACKET 拒绝服务漏洞
Vulnerability Description
SELinux(Security-Enhanced Linux)是美国国家安全局(NSA)和SCC(Secure Computing Corporation)共同开发的一个基于Linux系统的强制访问控制安全模块。 SELinux 2.6.x至2.6.9中版本存在拒绝服务漏洞。 由于sock_dgram_sendmsg函数没有正确处理SOCK_SEQPACKET sockets,远程攻击者可利用此漏洞使系统内核崩溃,导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A