2.1
CVSSv2

CVE-2004-1073

Published: 10/01/2005 Updated: 11/10/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.4.0

linux linux kernel 2.4.13

linux linux kernel 2.4.14

linux linux kernel 2.4.18

linux linux kernel 2.4.19

linux linux kernel 2.4.21

linux linux kernel 2.4.25

linux linux kernel 2.4.26

linux linux kernel 2.4.11

linux linux kernel 2.4.12

linux linux kernel 2.4.20

linux linux kernel 2.4.23_ow2

linux linux kernel 2.4.24

linux linux kernel 2.4.24_ow1

linux linux kernel 2.4.27

linux linux kernel 2.4.9

linux linux kernel 2.6.0

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.8

redhat enterprise linux 2.1

redhat linux advanced workstation 2.1

suse suse linux 9.0

suse suse linux 9.1

linux linux kernel 2.4.1

linux linux kernel 2.4.10

linux linux kernel 2.4.17

linux linux kernel 2.4.2

linux linux kernel 2.4.23

linux linux kernel 2.4.7

linux linux kernel 2.4.8

linux linux kernel 2.6.1

linux linux kernel 2.6.2

linux linux kernel 2.6.7

redhat fedora core core_2.0

redhat fedora core core_3.0

turbolinux turbolinux server 10.0

linux linux kernel 2.4.3

linux linux kernel 2.4.4

linux linux kernel 2.6.5

linux linux kernel 2.6.6

linux linux kernel 2.6.9

redhat enterprise linux 3.0

suse suse linux 1.0

suse suse linux 8.1

suse suse linux 9.2

trustix secure linux 1.5

trustix secure linux 2.0

linux linux kernel 2.4.15

linux linux kernel 2.4.16

linux linux kernel 2.4.22

linux linux kernel 2.4.5

linux linux kernel 2.4.6

linux linux kernel 2.6_test9_cvs

redhat enterprise linux desktop 3.0

suse suse linux 8.2

suse suse linux 8

trustix secure linux 2.1

trustix secure linux 2.2

Vendor Advisories

Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues in Red HatEnterprise Linux 3 are now available Description The Linux kernel handles the basic functions of the operating systemThis update includes fix ...
Synopsis Updated kernel packages fix security vulnerability Type/Severity Security Advisory: Important Topic Updated kernel packages are now available as part of ongoingsupport and maintenance of Red Hat Enterprise Linux version21 This is the sixth regular update Description The Linux ke ...
Synopsis Updated Itanium kernel packages resolve security issues Type/Severity Security Advisory: Important Topic Updated Itanium kernel packages are now available as part of ongoingsupport and maintenance of Red Hat Enterprise Linux version 21 This isthe sixth regular update Description ...
Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues in the Red HatEnterprise Linux 3 kernel are now availableThis security advisory has been rated as having important security impactby the Red Hat Security Response TeamT ...
CVE-2006-6060 CVE-2006-6106 CVE-2006-6535 CVE-2007-0958 CVE-2007-1357 CVE-2007-1592 Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code This update also fixes a regression in the smbfs subsystem which was introduced in DSA-1233 w ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-0005 Daniel Roethlisberger discovered two buffer overflows in the cm4040 driver for the Omnik ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-0427 A local denial of service vulnerability in do_fork() has been found CVE-2005-0489 A ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-0427 A local denial of service vulnerability in do_fork() has been found CVE-2005-0489 A ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-0427 A local denial of service vulnerability in do_fork() has been found CVE-2005-0489 A ...

Exploits

/* * * binfmt_elf executable file read vulnerability * * gcc -O3 -fomit-frame-pointer elfdumpc -o elfdump * * Copyright (c) 2004 iSEC Security Research All Rights Reserved * * THIS PROGRAM IS FOR EDUCATIONAL PURPOSES *ONLY* IT IS PROVIDED "AS IS" * AND WITHOUT ANY WARRANTY COPYING, PRINTING, DISTRIBUTION, MODIFICATION * WITHOUT PERMIS ...