The mem_cgroup_usage_unregister_event function in mm/memcontrol.c in the Linux kernel before 3.2.10 does not properly handle multiple events that are attached to the same eventfd, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by registering memory threshold events.
https://exchange.xforce.ibmcloud.com/vulnerabilities/73711
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.10
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00021.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-March/075781.html