CVE-2009-0031

Publication date 21 January 2009

Last updated 24 July 2024


Ubuntu priority

Memory leak in the keyctl_join_session_keyring function (security/keys/keyctl.c) in Linux kernel 2.6.29-rc2 and earlier allows local users to cause a denial of service (kernel memory consumption) via unknown vectors related to a "missing kfree."

From the Ubuntu Security Team

The kernel keyring did not free memory correctly. A local attacker could consume unlimited kernel memory, leading to a denial of service.

Status

Package Ubuntu Release Status

References

Related Ubuntu Security Notices (USN)

    • USN-751-1
    • Linux kernel vulnerabilities
    • 6 April 2009

Other references