PT-2004-3743 · Linux+2 · Linux Kernel+2

Mike Oconnor

·

Publicado

1970-01-01

·

Atualizado

2017-10-11

·

CVE-2005-0135

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Debian GNU/Linux kernel-image-2.4.18-powerpc-xfs version Debian GNU/Linux kernel-image-2.4.18-sun4u version Debian GNU/Linux kernel-image-2.4.18-sun4u-smp version Debian GNU/Linux kernel-image-2.4.19-sparc version Debian GNU/Linux kernel-image-2.4.19-sun4u version Debian GNU/Linux kernel-image-2.4.19-sun4u-smp version Linux kernel version 2.6
Description The issue concerns multiple vulnerabilities in the Linux kernel of Debian GNU/Linux, which can lead to a breach of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely. Additionally, a local user can cause a denial of service (system crash) on Itanium (ia64) architectures in Linux kernel 2.6 using the unw unwind to user function.
Recommendations For Debian GNU/Linux kernel-image-2.4.18-powerpc-xfs version, update to a newer version to mitigate the risk. For Debian GNU/Linux kernel-image-2.4.18-sun4u version, update to a newer version to mitigate the risk. For Debian GNU/Linux kernel-image-2.4.18-sun4u-smp version, update to a newer version to mitigate the risk. For Debian GNU/Linux kernel-image-2.4.19-sparc version, update to a newer version to mitigate the risk. For Debian GNU/Linux kernel-image-2.4.19-sun4u version, update to a newer version to mitigate the risk. For Debian GNU/Linux kernel-image-2.4.19-sun4u-smp version, update to a newer version to mitigate the risk. For Linux kernel version 2.6 on Itanium (ia64) architectures, consider restricting access to the unw unwind to user function until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-03380
BDU:2015-03381
BDU:2015-03382
BDU:2015-03383
BDU:2015-03384
BDU:2015-03385
BDU:2015-03576
BDU:2015-03577
CVE-2005-0135
DSA-1067-1
DSA-1070-1
DSA-1082-1
RHSA-2005:293
RHSA-2005:366
RHSA-2005_293
RHSA-2005_366

Produtos afetados

Debian
Linux Kernel
Red Hat