PT-2005-1126 · Linux · Linux Kernel

Josh Bressers

·

Published

2005-01-21

·

Updated

2017-10-11

·

CVE-2004-1057

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.4.20
Description The issue is related to multiple drivers in the Linux kernel that do not properly mark memory with the VM IO flag. This causes incorrect reference counts, potentially leading to a denial of service, specifically a kernel panic, when accessing freed kernel pages.
Recommendations For Linux kernel versions prior to 2.4.20, update to version 2.4.20 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1057
RHSA-2006:0140

Affected Products

Linux Kernel