CVE-2015-6252: Linux Kernel

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The vhost_dev_ioctl function in drivers/vhost/vhost.c in the Linux kernel before 4.1.5 allows local users to cause a denial of service (memory consumption) via a VHOST_SET_LOG_FD ioctl call that triggers permanent file-descriptor allocation.

Affected products

  • Linux Linux Kernel: up to and including 4.1.4

Published 2015-10-19. Last modified 2026-06-17.