PT-2004-3743 · Linux+2 · Linux Kernel+2
Mike Oconnor
·
Publicado
1970-01-01
·
Atualizado
2017-10-11
·
CVE-2005-0135
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Debian GNU/Linux kernel-image-2.4.18-powerpc-xfs version
Debian GNU/Linux kernel-image-2.4.18-sun4u version
Debian GNU/Linux kernel-image-2.4.18-sun4u-smp version
Debian GNU/Linux kernel-image-2.4.19-sparc version
Debian GNU/Linux kernel-image-2.4.19-sun4u version
Debian GNU/Linux kernel-image-2.4.19-sun4u-smp version
Linux kernel version 2.6
Description
The issue concerns multiple vulnerabilities in the Linux kernel of Debian GNU/Linux, which can lead to a breach of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely. Additionally, a local user can cause a denial of service (system crash) on Itanium (ia64) architectures in Linux kernel 2.6 using the
unw unwind to user function.Recommendations
For Debian GNU/Linux kernel-image-2.4.18-powerpc-xfs version, update to a newer version to mitigate the risk.
For Debian GNU/Linux kernel-image-2.4.18-sun4u version, update to a newer version to mitigate the risk.
For Debian GNU/Linux kernel-image-2.4.18-sun4u-smp version, update to a newer version to mitigate the risk.
For Debian GNU/Linux kernel-image-2.4.19-sparc version, update to a newer version to mitigate the risk.
For Debian GNU/Linux kernel-image-2.4.19-sun4u version, update to a newer version to mitigate the risk.
For Debian GNU/Linux kernel-image-2.4.19-sun4u-smp version, update to a newer version to mitigate the risk.
For Linux kernel version 2.6 on Itanium (ia64) architectures, consider restricting access to the
unw unwind to user function until a patch is available.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Debian
Linux Kernel
Red Hat