4.6
CVSSv2

CVE-2004-0109

Published: 01/06/2004 Updated: 11/10/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the ISO9660 file system component for Linux kernel 2.4.x, 2.5.x and 2.6.x, allows local users with physical access to overflow kernel memory and execute arbitrary code via a malformed CD containing a long symbolic link entry.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.0

linux linux kernel 2.4.0

linux linux kernel 2.5.0

Vendor Advisories

Several serious problems have been discovered in the Linux kernel This update takes care of Linux 2417 for the IA-64 architecture The Common Vulnerabilities and Exposures project identifies the following problems that will be fixed with this update: CAN-2004-0003 A vulnerability has been discovered in the R128 DRI driver in the Linux k ...
Several serious problems have been discovered in the Linux kernel This update takes care of Linux 2417 for the MIPS and MIPSel architectures The Common Vulnerabilities and Exposures project identifies the following problems that will be fixed with this update: CAN-2004-0003 A vulnerability has been discovered in the R128 DRI driver in the ...
Several serious problems have been discovered in the Linux kernel This update takes care of Linux 2417 for the PowerPC/apus and S/390 architectures The Common Vulnerabilities and Exposures project identifies the following problems that will be fixed with this update: CAN-2004-0003 A vulnerability has been discovered in the R128 DRI driver ...
Several serious problems have been discovered in the Linux kernel This update takes care of Linux 2419 for the MIPS architecture The Common Vulnerabilities and Exposures project identifies the following problems that will be fixed with this update: CAN-2004-0003 A vulnerability has been discovered in the R128 DRI driver in the Linux ke ...
Several serious problems have been discovered in the Linux kernel This update takes care of Linux 2416 for the ARM architecture The Common Vulnerabilities and Exposures project identifies the following problems that will be fixed with this update: CAN-2003-0127 The kernel module loader allows local users to gain root privileges by usin ...
Several serious problems have been discovered in the Linux kernel This update takes care of Linux 2417 and 2418 for the hppa (PA-RISC) architecture The Common Vulnerabilities and Exposures project identifies the following problems that will be fixed with this update: CAN-2004-0003 A vulnerability has been discovered in the R128 DRI drive ...

References

NVD-CWE-Otherhttp://www.idefense.com/application/poi/display?id=101&type=vulnerabilitieshttp://www.linuxsecurity.com/advisories/engarde_advisory-4285.htmlftp://patches.sgi.com/support/free/security/advisories/20040405-01-U.aschttp://rhn.redhat.com/errata/RHSA-2004-166.htmlhttp://www.debian.org/security/2004/dsa-479http://www.debian.org/security/2004/dsa-480http://www.debian.org/security/2004/dsa-481http://www.debian.org/security/2004/dsa-482http://www.debian.org/security/2004/dsa-489http://www.debian.org/security/2004/dsa-491http://www.debian.org/security/2004/dsa-495http://security.gentoo.org/glsa/glsa-200407-02.xmlftp://patches.sgi.com/support/free/security/advisories/20040504-01-U.aschttp://www.redhat.com/support/errata/RHSA-2004-105.htmlhttp://www.redhat.com/support/errata/RHSA-2004-106.htmlhttp://www.redhat.com/support/errata/RHSA-2004-183.htmlhttp://www.novell.com/linux/security/advisories/2004_09_kernel.htmlhttp://www.turbolinux.com/security/2004/TLSA-2004-14.txthttp://www.ciac.org/ciac/bulletins/o-121.shtmlhttp://www.ciac.org/ciac/bulletins/o-127.shtmlhttp://www.securityfocus.com/bid/10141http://secunia.com/advisories/11361http://secunia.com/advisories/11362http://secunia.com/advisories/11373http://secunia.com/advisories/11464http://secunia.com/advisories/11469http://secunia.com/advisories/11470http://secunia.com/advisories/11486http://secunia.com/advisories/11494http://secunia.com/advisories/11518http://secunia.com/advisories/11626http://secunia.com/advisories/11861http://secunia.com/advisories/11891http://secunia.com/advisories/11986http://secunia.com/advisories/12003http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000846http://www.mandriva.com/security/advisories?name=MDKSA-2004:029http://marc.info/?l=bugtraq&m=108213675028441&w=2http://secunia.com/advisories/11429https://exchange.xforce.ibmcloud.com/vulnerabilities/15866https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A940https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10733https://nvd.nist.govhttps://www.debian.org/security/./dsa-481