CVE-2009-1338

Priority
Low
Description
The kill_something_info function in kernel/signal.c in the Linux kernel
before 2.6.28 does not consider PID namespaces when processing signals
directed to PID -1, which allows local users to bypass the intended
namespace isolation, and send arbitrary signals to all processes in all
namespaces, via a kill command.
References
Notes
 smb> Dapper has no pid_namespace.
Package
Upstream:needs-triage
Package
Source: linux (LP Ubuntu Debian)
Upstream:needs-triage
More Information

Valid XHTML 1.0 Strict

Updated: 2015-07-29 20:35:39 UTC (commit 9756)