Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | < f25caaca424703d5a0607310f0452f978f1f78d9 |