FlawAtlas
Search the atlas
UBUNTU-CVE-2015-7990 Moderate

UBUNTU-CVE-2015-7990

Race condition in the rds_sendmsg function in net/rds/sendmsg.c in the Linux kernel before 4.3.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by using a socket that was not properly bound. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-6937.

Exploit probability Not scored
Published December 28, 2015
Required by Not available
Last source change April 22, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:14.04:LTS linux

84 explicit affected versions

Ubuntu:14.04:LTS linux-lts-utopic

34 explicit affected versions

Ubuntu:14.04:LTS linux-lts-vivid

19 explicit affected versions

Ubuntu:14.04:LTS linux-lts-wily

6 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

related USN-2886-1
related USN-2886-2
related USN-2887-2
related USN-2889-1
related USN-2890-1
related USN-2890-3

04 / EVIDENCE

Source records

Open Source Vulnerabilities UBUNTU-CVE-2015-7990

Race condition in the rds_sendmsg function in net/rds/sendmsg.c in the Linux kernel before 4.3.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by using a socket that was not properly bound. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-6937.

View original source

05 / REFERENCES

Further evidence