This security bulletin contains one low risk vulnerability.
Exploit availability: NoDescription
The vulnerability allows a local user to perform DoS attack.
The vulnerability exists due memory leak within the vsock_connect() function in net/vmw_vsock/af_vsock.c in Linux kernel IPSec implementation. A local user can force the system to leak memory and perform denial of service attack.Mitigation
Install updates from vendor's website.Vulnerable software versions
Linux kernel: All versions
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?