PT-2004-3675 · Linux+1 · Linux Kernel+1
Al Viro
·
Publicado
1970-01-01
·
Atualizado
2018-10-19
·
CVE-2005-2709
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Debian GNU/Linux kernel versions prior to 2.6.14.1
Description
The vulnerability in the Linux kernel allows local users to cause a denial of service (kernel oops) and possibly execute code by opening an interface file in /proc/sys/net/ipv4/conf/, waiting until the interface is unregistered, then obtaining and modifying function pointers in memory that was used for the ctl table. The vulnerability can be exploited remotely.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Linux Kernel
Red Hat