Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 387293

Summary: Kernel: net_namespace.c DoS facilitation (CVE-2011-2189)
Product: Gentoo Security Reporter: GLSAMaker/CVETool Bot <glsamaker>
Component: KernelAssignee: Gentoo Kernel Security <security-kernel>
Status: RESOLVED FIXED    
Severity: normal    
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard: [linux < 2.6.35]
Package list:
Runtime testing required: ---

Description GLSAMaker/CVETool Bot gentoo-dev 2011-10-16 13:54:35 UTC
CVE-2011-2189 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2189):
  net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not
  properly handle a high rate of creation and cleanup of network namespaces,
  which makes it easier for remote attackers to cause a denial of service
  (memory consumption) via requests to a daemon that requires a separate
  namespace per connection, as demonstrated by vsftpd.
Comment 1 Aaron Bauman (RETIRED) gentoo-dev 2018-04-04 17:41:50 UTC
There are no longer any 2.x kernels available in the repository with the exception of sys-kernel/xbox-sources which is unsupported by security.