CVE-2011-2183
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 0.5%
from disclosure to weapon0 days
Published on NVDJun 13
1st PoCJun 2
exploitation probability
0.5%top 58% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Race condition in the scan_get_next_rmap_item function in mm/ksm.c in the Linux kernel before 2.6.39.3, when Kernel SamePage Merging (KSM) is enabled, allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a crafted application.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/35820⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.39.3http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=2b472611a32a72f4a118c069c2d62a1a3f087afdhttps://bugzilla.redhat.com/show_bug.cgi?id=710338https://github.com/torvalds/linux/commit/2b472611a32a72f4a118c069c2d62a1a3f087afdhttp://www.openwall.com/lists/oss-security/2011/06/06/1