PT-2005-5548 · Linux+2 · Linux Kernel+2
Ilja Van Sprundel
·
Publicado
1970-01-01
·
Atualizado
2017-10-11
·
CVE-2005-1768
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Debian GNU/Linux kernel versions prior to 2.4.31
Linux kernel versions prior to 2.6.6
Description
The issue is related to multiple vulnerabilities in the Linux kernel, which can lead to a denial of service or potentially allow the execution of arbitrary code. A race condition in the ia32 compatibility code for the execve system call can cause a kernel panic. The vulnerabilities can be exploited remotely or locally, depending on the specific vulnerability and the system configuration. There is no information about the estimated number of potentially affected devices or real-world incidents where this issue was exploited.
Recommendations
For Debian GNU/Linux kernel versions prior to 2.4.31, update to a version 2.4.31 or later.
For Linux kernel versions prior to 2.6.6, update to a version 2.6.6 or later.
As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation until a patch is available.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Debian
Linux Kernel
Red Hat