The signal handler implementations in socat before 1.7.3.0 and 2.0.0-b8 allow remote attackers to cause a denial of service (process freeze or crash).
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1379
Reference (s):
- BID:72321
- URL: http://www.securityfocus.com/bid/72321
- http://www.dest-unreach.org/socat/
- https://bugzilla.redhat.com/show_bug.cgi?id=1185711
- MLIST:[oss-security] 20150127 Re: Socat security advisory 6 – Possible DoS with fork