CVE-2012-2127: Linux Kernel
Medium severity, CVSS 5.0. EPSS: 4.3% chance of exploitation in the next 30 days.
fs/proc/root.c in the procfs implementation in the Linux kernel before 3.2 does not properly interact with CLONE_NEWPID clone system calls, which allows remote attackers to cause a denial of service (reference leak and memory consumption) by making many connections to a daemon that uses PID namespaces to isolate clients, as demonstrated by vsftpd.
Affected products
- Linux Linux Kernel: up to and including 3.1.10; version 3.1.1 only; version 3.1.2 only; version 3.1.3 only; version 3.1.4 only; version 3.1.5 only; …
Published 2012-06-21. Last modified 2026-06-16.