CVE-2009-1961
08.06.2009, 01:00
The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2.6.27 before 2.6.27.24, 2.6.29 before 2.6.29.4, and possibly other versions down to 2.6.19 allows local users to cause a denial of service (prevention of file creation and removal) via a series of splice system calls that trigger a deadlock between the generic_file_splice_write, splice_from_pipe, and ocfs2_file_splice_write functions.Enginsight
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 𝑥 ≤ 2.6.19 |
linux | linux_kernel | 2.6.27 ≤ 𝑥 < 2.6.27.24 |
linux | linux_kernel | 2.6.29 ≤ 𝑥 < 2.6.29.4 |
linux | linux_kernel | 2.6.30:rc1 |
linux | linux_kernel | 2.6.30:rc2 |
debian | debian_linux | 4.0 |
canonical | ubuntu_linux | 6.06 |
canonical | ubuntu_linux | 8.04 |
canonical | ubuntu_linux | 8.10 |
canonical | ubuntu_linux | 9.04 |
opensuse | opensuse | 10.3 |
opensuse | opensuse | 11.1 |
suse | linux_enterprise | 11.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References