CVE-2008-4307 | Date: (C)2009-01-13 (M)2024-02-22 |
Race condition in the do_setlk function in fs/nfs/file.c in the Linux kernel before 2.6.26 allows local users to cause a denial of service (crash) via vectors resulting in an interrupted RPC call that leads to a stray FL_POSIX lock, related to improper handling of a race between fcntl and close in the EINTR case.
CVSS Score and Metrics +CVSS Score and Metrics -CVSS V2 Severity: |
CVSS Score : 4.0 |
Exploit Score: 1.9 |
Impact Score: 6.9 |
|
CVSS V2 Metrics: |
Access Vector: LOCAL |
Access Complexity: HIGH |
Authentication: NONE |
Confidentiality: NONE |
Integrity: NONE |
Availability: COMPLETE |
| |