PT-2004-3742 · Linux+2 · Linux Kernel+2

Publicado

1970-01-01

·

Atualizado

2017-10-11

·

CVE-2005-0003

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Debian GNU/Linux kernel-image-2.4.19-sun4u-smp versions Debian GNU/Linux kernel-image-2.4.18-powerpc-xfs versions Debian GNU/Linux kernel-image-2.4.18-sun4u versions Debian GNU/Linux kernel-patch-benh versions Debian GNU/Linux kernel-image-2.4.18-sun4u-smp versions Debian GNU/Linux kernel-headers-2.4.19-sparc versions Debian GNU/Linux kernel-headers-2.4.18-sparc versions Debian GNU/Linux kernel-image-2.4.19-sun4u versions Linux kernel versions prior to 2.6.10
Description The issue involves multiple vulnerabilities in the Linux kernel of Debian GNU/Linux, which can lead to a breach of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely. Additionally, there is an issue with the 64-bit ELF support in Linux kernel versions prior to 2.6.10 on 64-bit architectures, where improper checking for overlapping VMA allocations allows local users to cause a denial of service or execute arbitrary code via a crafted ELF or a.out file.
Recommendations For Debian GNU/Linux kernel-image-2.4.19-sun4u-smp, consider disabling the vulnerable kernel until a patch is available. For Debian GNU/Linux kernel-image-2.4.18-powerpc-xfs, restrict access to the vulnerable kernel to minimize the risk of exploitation. For Debian GNU/Linux kernel-image-2.4.18-sun4u, avoid using the vulnerable kernel in production environments until the issue is resolved. For Debian GNU/Linux kernel-patch-benh, consider applying a patch or updating to a newer version of the kernel. For Debian GNU/Linux kernel-image-2.4.18-sun4u-smp, restrict access to the vulnerable kernel to minimize the risk of exploitation. For Debian GNU/Linux kernel-headers-2.4.19-sparc, consider updating to a newer version of the kernel headers. For Debian GNU/Linux kernel-headers-2.4.18-sparc, restrict access to the vulnerable kernel headers to minimize the risk of exploitation. For Debian GNU/Linux kernel-image-2.4.19-sun4u, consider disabling the vulnerable kernel until a patch is available. For Linux kernel versions prior to 2.6.10, update to version 2.6.10 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-03380
BDU:2015-03381
BDU:2015-03382
BDU:2015-03383
BDU:2015-03384
BDU:2015-03385
BDU:2015-03576
BDU:2015-03577
CVE-2005-0003
DSA-1067-1
DSA-1069-1
DSA-1070-1
DSA-1082-1
RHSA-2005:043
RHSA-2005_043

Produtos afetados

Debian
Linux Kernel
Red Hat