PT-2005-2271 · Linux+1 · Linux Kernel+1
Jan Glauber
·
Published
2005-05-17
·
Updated
2018-10-19
·
CVE-2005-1264
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Linux kernel versions 2.6.x
Description:
The issue concerns a problem in the raw character devices (raw.c) of the Linux kernel, where the wrong function is called before passing an ioctl to the block device. This crosses security boundaries, making kernel address space accessible from user space.
Recommendations:
For Linux kernel version 2.6.x, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel
Red Hat