[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195549

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2003-0985Date: (C)2004-01-20   (M)2023-12-22


The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.2
Exploit Score: 3.9
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECUNIA-10532
2004-0001
20040102-01-U
http://marc.info/?l=bugtraq&m=107340358402129&w=2
http://marc.info/?l=bugtraq&m=107332782121916&w=2
http://marc.info/?l=bugtraq&m=107340814409017&w=2
http://marc.info/?l=bugtraq&m=107350348418373&w=2
http://archives.neohapsis.com/archives/bugtraq/2004-01/0070.html
http://marc.info/?l=bugtraq&m=107394143105081&w=2
SECUNIA-20163
SECUNIA-20202
SECUNIA-20338
OSVDB-3315
BID-9356
CLA-2004:799
DSA-1067
DSA-1069
DSA-1070
DSA-1082
DSA-413
DSA-417
DSA-423
DSA-427
DSA-439
DSA-440
DSA-442
DSA-450
DSA-470
DSA-475
ESA-20040105-001
IMNX-2004-73-001-01
MDKSA-2004:001
O-045
RHSA-2003:416
RHSA-2003:417
RHSA-2003:418
RHSA-2003:419
SuSE-SA:2004:003
VU#490620
http://isec.pl/vulnerabilities/isec-0013-mremap.txt
http://klecker.debian.org/~joey/security/kernel/patches/patch.CAN-2005-0528.mremap
http://svn.debian.org/wsvn/kernel/patch-tracking/CVE-2005-0528?op=file&rev=0&sc=0
http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.24
linux-domremap-gain-privileges(14135)

CPE    53
cpe:/o:linux:linux_kernel:2.4.21:pre4
cpe:/o:linux:linux_kernel:2.4.21:pre7
cpe:/o:linux:linux_kernel:2.4.18:pre6
cpe:/o:linux:linux_kernel:2.4.18:pre7
...

© SecPod Technologies