CVE-2014-0102
The keyring_detect_cycle_iterator function in security/keys/keyring.c in the Linux kernel through 3.13.6 does not properly determine whether keyrings are identical, which allows local users to cause a denial of service (OOPS) via crafted keyctl commands.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0017 (0.2%)
Percentile: 38.1%
EPSS: 2026-05-06
Affects
linux:linux_kernelTechnical description
The keyring_detect_cycle_iterator function in security/keys/keyring.c in the Linux kernel through 3.13.6 does not properly determine whether keyrings are identical, which allows local users to cause a denial of service (OOPS) via crafted keyctl commands.
Published: 3/11/2014, 1:01:08 PM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://lkml.org/lkml/2014/2/27/507
- http://www.kernelhub.org/?msg=425013&p=2
- http://www.openwall.com/lists/oss-security/2014/03/04/21
- https://bugzilla.redhat.com/show_bug.cgi?id=1072419
- http://lkml.org/lkml/2014/2/27/507
- http://www.kernelhub.org/?msg=425013&p=2
- http://www.openwall.com/lists/oss-security/2014/03/04/21
- https://bugzilla.redhat.com/show_bug.cgi?id=1072419