CVE-2007-0997
Severity CVSS v4.0:
Pending analysis
Type:
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Publication date:
18/09/2007
Last modified:
09/04/2025
Description
Race condition in the tee (sys_tee) system call in the Linux kernel 2.6.17 through 2.6.17.6 might allow local users to cause a denial of service (system crash), obtain sensitive information (kernel memory contents), or gain privileges via unspecified vectors related to a potentially dropped ipipe lock during a race between two pipe readers.
Impact
Base Score 2.0
6.90
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:linux:linux_kernel:2.6.17:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17:rc1:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17:rc2:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17:rc3:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17:rc4:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17:rc5:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17:rc6:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17.1:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17.3:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17.4:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17.5:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:2.6.17.6:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page