5
CVSSv2

CVE-2005-2459

Published: 23/08/2005 Updated: 19/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The huft_build function in inflate.c in the zlib routines in the Linux kernel prior to 2.6.12.5 returns the wrong value, which allows remote malicious users to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointer dereference, a different vulnerability than CVE-2005-2458.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.0

linux linux kernel 2.6.11.1

linux linux kernel 2.6.11.2

linux linux kernel 2.6.11

linux linux kernel 2.6.5

linux linux kernel 2.6.6

linux linux kernel 2.6.8.1.5

linux linux kernel 2.6.8

linux linux kernel 2.6.9

linux linux kernel 2.6.10

linux linux kernel 2.6.11.8

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.8.1

linux linux kernel 2.6.1

linux linux kernel 2.6.11.3

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.5

linux linux kernel 2.6.11_rc1_bk6

linux linux kernel 2.6.12

linux linux kernel 2.6.7

linux linux kernel 2.6_test9_cvs

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.7

linux linux kernel 2.6.2

debian debian linux 3.1

Vendor Advisories

David Howells discovered a local Denial of Service vulnerability in the key session joining function Under certain user-triggerable conditions, a semaphore was not released properly, which caused processes which also attempted to join a key session to hang forever This only affects Ubuntu 504 (Hoary Hedgehog) (CAN-2005-2098) ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-0756 Alexander Nyberg discovered that the ptrace() system call does not properly verify addre ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-2302 A race condition in the sysfs filesystem allows local users to read kernel memory and ca ...