CVE-2013-4312: Linux Kernel

Medium severity, CVSS 6.2. EPSS: 0.6% chance of exploitation in the next 30 days.

The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by sending each descriptor over a UNIX socket before closing it, related to net/unix/af_unix.c and net/unix/garbage.c.

Affected products

  • Linux Linux Kernel: up to and including 4.4
  • Oracle Linux: version 5.0 only; version 6 only; version 7 only

Published 2016-02-08. Last modified 2026-06-16.