Memory leak in the __key_link_end function in security/keys/keyring.c in the Linux kernel before 4.1.4 allows local users to cause a denial of service (memory consumption) via many add_key system calls that refer to existing keys.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1333
Reference (s):
- BID:76050
- URL: http://www.securityfocus.com/bid/76050
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ca4da5dd1f99fe9c59f1709fb43e818b18ad20e0
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.4
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html