CVE-2009-1338

Priority
Low
Description
The kill_something_info function in kernel/signal.c in the Linux kernel
before 2.6.28 does not consider PID namespaces when processing signals
directed to PID -1, which allows local users to bypass the intended
namespace isolation, and send arbitrary signals to all processes in all
namespaces, via a kill command.
References
Notes
smb> Dapper has no pid_namespace.
Package
Upstream:needs-triage
Ubuntu 8.04 LTS (Hardy Heron):DNE
Package
Source: linux (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 8.04 LTS (Hardy Heron):released (2.6.24-24.55)
More Information

Valid XHTML 1.0 Strict

Updated: 2012-06-01 15:19:48 UTC (commit 5347)