CVE-2009-3547
highCVSS v3 Base Score
7.0
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
3.2%
Exploitation probability in 30 days
Top 13% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
High
Privileges Required
Low
User Interaction
None
Confidentiality
High
Integrity
High
Availability
High
Published: November 4, 2009 (6035 days ago)
Last Modified: April 23, 2026
Vendor: VMware
Source: NVD
Vulnerability Report
Generated by CyberWatcher
Description
Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privileges by attempting to open an anonymous pipe via a /proc/*/fd/ pathname.
CWE
CWE-362Affected Products
linux linux kernelnovell linux desktopopensuse opensusesuse suse linux enterprise desktopsuse suse linux enterprise servercanonical ubuntu linuxfedoraproject fedoravmware vmavmware esxredhat mrg realtime