4.4
CVSSv2

CVE-2004-2731

Published: 31/12/2004 Updated: 05/09/2008
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer overflows in Sbus PROM driver (drivers/sbus/char/openprom.c) for the Linux kernel 2.4.x up to 2.4.27, 2.6.x up to 2.6.7, and possibly later versions, allow local users to execute arbitrary code by specifying (1) a small buffer size to the copyin_string function or (2) a negative buffer size to the copyin function.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.4.0

linux linux kernel 2.4.1

linux linux kernel 2.4.10

linux linux kernel 2.4.18

linux linux kernel 2.4.21

linux linux kernel 2.4.22

linux linux kernel 2.4.28

linux linux kernel 2.4.29

linux linux kernel 2.4.33.3

linux linux kernel 2.4.33.4

linux linux kernel 2.4.33.5

linux linux kernel 2.4.33

linux linux kernel 2.6.0

linux linux kernel 2.6.1

linux linux kernel 2.6.2

linux linux kernel 2.6.3

linux linux kernel 2.4.14

linux linux kernel 2.4.15

linux linux kernel 2.4.16

linux linux kernel 2.4.17

linux linux kernel 2.4.19

linux linux kernel 2.4.24_ow1

linux linux kernel 2.4.25

linux linux kernel 2.4.26

linux linux kernel 2.4.27

linux linux kernel 2.4.30

linux linux kernel 2.4.31

linux linux kernel 2.4.32

linux linux kernel 2.4.35.2

linux linux kernel 2.4.4

linux linux kernel 2.4.5

linux linux kernel 2.4.6

linux linux kernel 2.4.11

linux linux kernel 2.4.12

linux linux kernel 2.4.2

linux linux kernel 2.4.23

linux linux kernel 2.4.24

linux linux kernel 2.4.3

linux linux kernel 2.4.33.2

linux linux kernel 2.4.34

linux linux kernel 2.4.34.2

linux linux kernel 2.4.35

linux linux kernel 2.4.7

linux linux kernel 2.4.9

linux linux kernel 2.6.5

linux linux kernel 2.6.7

linux linux kernel 2.4.13

linux linux kernel 2.4.20

linux linux kernel 2.4.23_ow2

linux linux kernel 2.4.34.1

linux linux kernel 2.4.8

linux linux kernel 2.4.9_pre5

linux linux kernel 2.6.4

linux linux kernel 2.6.6

Vendor Advisories

Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-2731 infamous41md reported multiple integer overflows in the Sbus PROM driver that would allo ...