Published: 21 January 2009
Memory leak in the keyctl_join_session_keyring function (security/keys/keyctl.c) in Linux kernel 2.6.29-rc2 and earlier allows local users to cause a denial of service (kernel memory consumption) via unknown vectors related to a "missing kfree."
From the Ubuntu security team
The kernel keyring did not free memory correctly. A local attacker could consume unlimited kernel memory, leading to a denial of service.