2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2004-2607" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2004-12-31T05:00:00.000" ,
2024-11-21 23:11:37 +00:00
"lastModified" : "2024-11-20T23:53:47.243" ,
"vulnStatus" : "Modified" ,
2024-12-08 03:06:42 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users to read portions of kernel memory via a large len argument, which is received as an int but cast to a short, which prevents a read loop from filling a buffer."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:L/AC:L/Au:N/C:P/I:N/A:N" ,
2024-11-21 23:11:37 +00:00
"baseScore" : 2.1 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "LOCAL" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-11-21 23:11:37 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "LOW" ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-Other"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test1:*:*:*:*:*:*" ,
"matchCriteriaId" : "2E244C37-E366-482E-9173-9376D0839839"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test10:*:*:*:*:*:*" ,
"matchCriteriaId" : "11F96BB9-6509-4F1E-9590-E55EE8C6F992"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test11:*:*:*:*:*:*" ,
"matchCriteriaId" : "AFAEE304-B9D4-4F1E-A2E0-9E5A4932096D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test12:*:*:*:*:*:*" ,
"matchCriteriaId" : "12375EA9-EBFF-40B6-BCBC-E34BC3A6CDA3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test2:*:*:*:*:*:*" ,
"matchCriteriaId" : "718D4631-440E-4783-8966-B2A2D3EF89B3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test3:*:*:*:*:*:*" ,
"matchCriteriaId" : "6111EDDB-065F-4AD1-925C-E0A3C1DE26AE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test4:*:*:*:*:*:*" ,
"matchCriteriaId" : "A8A2F7E7-0C51-43F2-BCEA-01FF738971D6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test5:*:*:*:*:*:*" ,
"matchCriteriaId" : "40F5FFBB-05C8-4D65-9FCF-11E67BEE86AD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test6:*:*:*:*:*:*" ,
"matchCriteriaId" : "7015F57A-1E3B-42D2-9D12-F695078EFB21"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test7:*:*:*:*:*:*" ,
"matchCriteriaId" : "467721EE-5130-46C5-BBB7-0F4878F3F171"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test8:*:*:*:*:*:*" ,
"matchCriteriaId" : "171257E7-12C5-4283-88F7-FFE643995563"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:test9:*:*:*:*:*:*" ,
"matchCriteriaId" : "0887E02F-9F36-41F0-9F75-060B8414D7BF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:*:x86:*:*:*:*:*" ,
"matchCriteriaId" : "D77F8919-4064-4EA5-A948-76178EA21F83"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre1:*:*:*:*:*:*" ,
"matchCriteriaId" : "5E7C423D-23DE-4C7B-A518-66F87E041925"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre2:*:*:*:*:*:*" ,
"matchCriteriaId" : "8EA1382E-71B0-4E65-A310-716A244F4FB1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre3:*:*:*:*:*:*" ,
"matchCriteriaId" : "AC955BD8-3ABB-4FDB-B37E-B1F0C47A5E0D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre4:*:*:*:*:*:*" ,
"matchCriteriaId" : "2EBCA878-CCD0-4645-ACF6-12FB9C4B4A4D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre5:*:*:*:*:*:*" ,
"matchCriteriaId" : "B4BEF62D-2BEF-4CF8-9559-8A6D9631B0EC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre6:*:*:*:*:*:*" ,
"matchCriteriaId" : "824BBD31-8F3B-4F05-981B-ABF662BBF5F2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre7:*:*:*:*:*:*" ,
"matchCriteriaId" : "10F4CCC2-8AE5-4CFF-8DC4-126F02126E1F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:pre8:*:*:*:*:*:*" ,
"matchCriteriaId" : "388A5C99-1F60-4C20-9AE5-6E73E5A3F819"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:pre1:*:*:*:*:*:*" ,
"matchCriteriaId" : "5888F8D7-15C2-4435-BB3C-8674DFAF0089"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:pre2:*:*:*:*:*:*" ,
"matchCriteriaId" : "29439AD0-EB8D-4675-A77A-6548FF27ADA3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:pre3:*:*:*:*:*:*" ,
"matchCriteriaId" : "F27AADF6-1605-47FC-8C4D-87827A578A90"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:pre4:*:*:*:*:*:*" ,
"matchCriteriaId" : "B42F4080-A76F-4D17-85E2-CD2D2E4D0450"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:pre5:*:*:*:*:*:*" ,
"matchCriteriaId" : "6968EF1D-7CC5-430D-866D-206F66486F63"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:pre6:*:*:*:*:*:*" ,
"matchCriteriaId" : "50E6F5C5-BF74-4C10-830A-F232D528D290"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.21:pre1:*:*:*:*:*:*" ,
"matchCriteriaId" : "8EEBFBB4-CC06-40D2-8DE9-22E82DBEFADA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.21:pre4:*:*:*:*:*:*" ,
"matchCriteriaId" : "DCD8E4AE-FEF7-4CE2-B338-4F766921593F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.21:pre7:*:*:*:*:*:*" ,
"matchCriteriaId" : "13A8B50A-73F6-4FCF-A81F-FB624FBA7143"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.22:pre10:*:*:*:*:*:*" ,
"matchCriteriaId" : "E1D21AD5-C34F-4005-92F3-98F714DE98D8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.23:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BB45C3B2-0F5D-4AE2-AE00-E1D6501E8D92"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.23:pre9:*:*:*:*:*:*" ,
"matchCriteriaId" : "8D27D843-2DA7-4481-857C-09FDC4FBD45C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.23_ow2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BCB93128-2743-4668-8C48-9B7282D4A672"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.24:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "040991B8-FB4B-480B-B53B-AA7A884F9F19"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.24_ow1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BFA592BC-5846-4FC1-B2A7-13E622705DA8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.25:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "59688C40-C92F-431E-ADD7-6782622862D3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.26:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D813900D-DCF3-4F5D-9D90-13EDE2CBB3DA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.27:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6E4C7831-0296-4DFA-A4E9-F7B6B30FFB72"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.27:pre1:*:*:*:*:*:*" ,
"matchCriteriaId" : "C5FE15BF-91C7-452A-BE1B-7EC9632421C2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.27:pre2:*:*:*:*:*:*" ,
"matchCriteriaId" : "15C1923C-D9C4-400D-9F0F-20B519EEC9C0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.27:pre3:*:*:*:*:*:*" ,
"matchCriteriaId" : "E51913F9-FC7D-450A-9A82-5084AA74A5B2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.27:pre4:*:*:*:*:*:*" ,
"matchCriteriaId" : "B62E02D5-9EEE-439B-A510-BEEE28A9F358"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.27:pre5:*:*:*:*:*:*" ,
"matchCriteriaId" : "02278C07-E649-427D-9E5C-F1738A01BCBD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.28:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E120257D-346B-4BA6-A431-E6F820FBB5FB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.29:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "361D407D-A4BE-491D-BC8E-32E78DC4A8F0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.29:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "4F83D55B-3106-4907-A75F-A7EBF0EC6974"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "142BCD48-8387-4D0C-A052-44DD4144CBFF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.1:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "D2A55C17-C530-4898-BC95-DE4D495F0D7C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.1:rc2:*:*:*:*:*:*" ,
"matchCriteriaId" : "2C14A949-E2B8-4100-8ED4-645CB996B08A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EB445E3E-CCBD-4737-BE30-841B9A79D558"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F5301E27-8021-467C-A9A2-AF2137EF0299"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "79787868-2D77-4B55-AD61-C2B357CCE047"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.6.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2B3F27D3-8F1D-4576-A584-1E2059CC67B1"
}
]
}
]
}
] ,
"references" : [
2024-04-04 08:46:00 +00:00
{
"url" : "http://secunia.com/advisories/18977" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://secunia.com/advisories/19369" ,
"source" : "cve@mitre.org"
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://www.debian.org/security/2006/dsa-1018" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:072" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.securityfocus.com/bid/16759" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.uwsg.iu.edu/hypermail/linux/kernel/0404.2/0313.html" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://www.uwsg.iu.edu/hypermail/linux/kernel/0404.2/0743.html" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:044" ,
"source" : "cve@mitre.org"
2024-11-21 23:11:37 +00:00
} ,
{
"url" : "http://secunia.com/advisories/18977" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://secunia.com/advisories/19369" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2006/dsa-1018" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:072" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.securityfocus.com/bid/16759" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.uwsg.iu.edu/hypermail/linux/kernel/0404.2/0313.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://www.uwsg.iu.edu/hypermail/linux/kernel/0404.2/0743.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:044" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}