ID:6363 - Exploit for Race condition in procps - CVE-2018-1121

 
Main Vulnerability Database Exploits ID:6363 - Exploit for Race condition in procps - CVE-2018-1121

ID:6363 - Exploit for Race condition in procps - CVE-2018-1121

Published: June 17, 2021


Vulnerability identifier: #VU12974
Vulnerability risk: Low
CVE-ID: CVE-2018-1121
CWE-ID: CWE-362
Exploitation vector: Remote access
Vulnerable software:
procps

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to cause DoS condition on the target system.

The weakness exists due to a race condition inherent in reading /proc/PID entries. A remote attacker can hide a process from procps-ng's utilities and cause the service to crash.

Remediation

Update to version 3.3.15.