CVE-2011-1159
Publication date 4 October 2011
Last updated 24 July 2024
Ubuntu priority
acpid.c in acpid before 2.0.9 does not properly handle a situation in which a process has connected to acpid.socket but is not reading any data, which allows local users to cause a denial of service (daemon hang) via a crafted application that performs a connect system call but no read system calls.
Status
Package | Ubuntu Release | Status |
---|---|---|
acpid | 11.10 oneiric |
Not affected
|
11.04 natty |
Fixed 1:2.0.7-1ubuntu2.1
|
|
10.10 maverick |
Fixed 1.0.10-5ubuntu4.1
|
|
10.04 LTS lucid |
Fixed 1.0.10-5ubuntu2.2
|
|
8.04 LTS hardy | Ignored end of life |
References
Related Ubuntu Security Notices (USN)
- USN-1234-1
- acpid vulnerability
- 20 October 2011