Unrated severityNVD Advisory· Published Sep 17, 2007· Updated Apr 23, 2026
CVE-2007-3731
CVE-2007-3731
Description
The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
16- bugzilla.redhat.com/show_bug.cginvdPatch
- bugzilla.kernel.org/show_bug.cginvdExploit
- osvdb.org/37286nvd
- secunia.com/advisories/26935nvd
- secunia.com/advisories/26955nvd
- secunia.com/advisories/26978nvd
- secunia.com/advisories/27322nvd
- secunia.com/advisories/29159nvd
- wiki.rpath.com/wiki/Advisories:rPSA-2008-0094nvd
- www.debian.org/security/2007/dsa-1378nvd
- www.redhat.com/support/errata/RHSA-2007-0940.htmlnvd
- www.securityfocus.com/archive/1/488972/100/0/threadednvd
- www.securityfocus.com/bid/25801nvd
- www.ubuntu.com/usn/usn-518-1nvd
- issues.rpath.com/browse/RPL-2304nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10394nvd
News mentions
0No linked articles in our index yet.