Unrated severityNVD Advisory· Published Jul 2, 2008· Updated Apr 23, 2026
CVE-2008-2372
CVE-2008-2372
Description
The Linux kernel 2.6.24 and 2.6.25 before 2.6.25.9 allows local users to cause a denial of service (memory consumption) via a large number of calls to the get_user_pages function, which lacks a ZERO_PAGE optimization and results in allocation of "useless newly zeroed pages."
Affected products
10cpe:2.3:o:linux:linux_kernel:2.6.24:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:o:linux:linux_kernel:2.6.24:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.1:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.2:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.3:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.4:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.5:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.6:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.7:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:2.6.25.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
19- kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.25.9nvd
- lists.opensuse.org/opensuse-security-announce/2008-07/msg00007.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2008-07/msg00009.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2008-07/msg00012.htmlnvd
- new-ubuntu-news.blogspot.com/2008/06/re-pending-stable-kernel-security_25.htmlnvd
- secunia.com/advisories/30901nvd
- secunia.com/advisories/30982nvd
- secunia.com/advisories/31202nvd
- secunia.com/advisories/31628nvd
- secunia.com/advisories/32393nvd
- secunia.com/advisories/32485nvd
- wiki.rpath.com/wiki/Advisories:rPSA-2008-0207nvd
- www.redhat.com/support/errata/RHSA-2008-0585.htmlnvd
- www.redhat.com/support/errata/RHSA-2008-0957.htmlnvd
- www.ubuntu.com/usn/usn-659-1nvd
- www.ussg.iu.edu/hypermail/linux/kernel/0804.3/3203.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43550nvd
- issues.rpath.com/browse/RPL-2629nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9383nvd
News mentions
0No linked articles in our index yet.