PT-2006-1036 · Linux+1 · Linux Kernel+1
Kirill Korotaev
·
Published
2006-09-05
·
Updated
2018-10-30
·
CVE-2006-4538
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Red Hat Enterprise Linux kernel versions 2.4.9 through 2.4.18
Red Hat Enterprise Linux kernel versions prior to 2.6.18
Description:
The issue affects the Linux kernel in Red Hat Enterprise Linux, allowing for potential disruption of confidentiality, integrity, and availability of protected information. Exploitation can be done remotely. On IA64 or SPARC platforms, a local user can cause a denial of service via a malformed ELF file.
Recommendations:
For Red Hat Enterprise Linux kernel versions 2.4.9 through 2.4.18, update to a version later than 2.4.18 to resolve the issue.
For Red Hat Enterprise Linux kernel versions prior to 2.6.18, update to version 2.6.18 or later to resolve the issue.
As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Red Hat