Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2005-2490 - CERT CVE
CVE-2005-2490
ID
CVE-2005-2490
Sažetak
Stack-based buffer overflow in the sendmsg function call in the Linux kernel 2.6 before 2.6.13.1 allows local users to execute arbitrary code by calling sendmsg and modifying the message contents in another thread.
Reference
http://marc.info/?l=bugtraq&m=112690609622266&w=2
http://secunia.com/advisories/16747/
http://secunia.com/advisories/17002
http://secunia.com/advisories/17073
http://secunia.com/advisories/17826
http://secunia.com/advisories/17918
http://secunia.com/advisories/19374
http://www.debian.org/security/2006/dsa-1017
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.13.1
http://www.mandriva.com/security/advisories?name=MDKSA-2005:219
http://www.mandriva.com/security/advisories?name=MDKSA-2005:220
http://www.mandriva.com/security/advisories?name=MDKSA-2005:235
http://www.redhat.com/support/errata/RHSA-2005-514.html
http://www.redhat.com/support/errata/RHSA-2005-663.html
http://www.securityfocus.com/archive/1/419522/100/0/threaded
http://www.securityfocus.com/archive/1/427980/100/0/threaded
http://www.securityfocus.com/archive/1/428028/100/0/threaded
http://www.securityfocus.com/archive/1/428058/100/0/threaded
http://www.securityfocus.com/bid/14785
http://www.ubuntu.com/usn/usn-178-1
http://www.vupen.com/english/advisories/2005/1878
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=166248
https://exchange.xforce.ibmcloud.com/vulnerabilities/22217
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10481
CVSS
Base:
4.6
Impact:
6.4
Exploitability:
3.9
Pristup
Vektor
Složenost
Autentikacija
LOCAL
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
PARTIAL
PARTIAL
PARTIAL
CVSS vektor
AV:L/AC:L/Au:N/C:P/I:P/A:P
Zadnje važnije ažuriranje
19-10-2018 - 15:32
Objavljeno
14-09-2005 - 19:03