LWN.net Logo

acpid: denial of service

Package(s):acpid CVE #(s):CVE-2011-1159
Created:May 16, 2011 Updated:May 31, 2012
Description: From the Red Hat Bugzilla entry:

It was reported that acpid opened the UNIX socket that informs unprivileged processes about acpi evens in blocking mode. If an unprivileged process were to stop reading data from the socket, then after some time the socket queue fills up which would then lead to a hang of the privileged acpid daemon. The daemon will hang until the socket peer process read some portion of the queued data or the peer process exits or is killed.

Alerts:
Debian DSA-2362-1 2011-12-10
Ubuntu USN-1234-1 2011-10-20
Fedora FEDORA-2011-6460 2011-05-04
Mandriva MDVSA-2012:086 2012-05-31

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds