The key serial number collision avoidance code in the key_alloc_serial function in Linux kernel 2.6.9 up to 2.6.20 allows local users to cause a denial of service (crash) via vectors that trigger a null dereference, as originally reported as "spinlock CPU recursion."
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation40 reference(s) from NVD