4.6
CVSSv2

CVE-2005-2709

Published: 20/11/2005 Updated: 19/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The sysctl functionality (sysctl.c) in Linux kernel prior to 2.6.14.1 allows local users to cause a denial of service (kernel oops) and possibly execute code by opening an interface file in /proc/sys/net/ipv4/conf/, waiting until the interface is unregistered, then obtaining and modifying function pointers in memory that was used for the ctl_table.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.13.4

linux linux kernel 2.6.13.3

linux linux kernel 2.6.12.3

linux linux kernel 2.6.12.2

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.10

linux linux kernel 2.6.1

linux linux kernel 2.4.36.2

linux linux kernel 2.4.33

linux linux kernel 2.4.35.3

linux linux kernel 2.4.36.7

linux linux kernel 2.4.37.1

linux linux kernel 2.4.37

linux linux kernel 2.4.21

linux linux kernel 2.4.23

linux linux kernel 2.4.19

linux linux kernel 2.4.29

linux linux kernel 2.4.27

linux linux kernel 2.4.37.2

linux linux kernel 2.4.18

linux linux kernel 2.4.10

linux linux kernel 2.4.11

linux linux kernel 2.4.37.6

linux linux kernel 2.4.15

linux linux kernel 2.4.35.5

linux linux kernel 2.4.35.1

linux linux kernel 2.4.34.2

linux linux kernel 2.4.31

linux linux kernel

linux linux kernel 2.6.13.5

linux linux kernel 2.6.12.5

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.7

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.5

linux linux kernel 2.6.11.1

linux linux kernel 2.6.11

linux linux kernel 2.4.36

linux linux kernel 2.4.36.3

linux linux kernel 2.4.30

linux linux kernel 2.4.33.3

linux linux kernel 2.4.33.4

linux linux kernel 2.4.28

linux linux kernel 2.4.25

linux linux kernel 2.4.26

linux linux kernel 2.6.13.2

linux linux kernel 2.6.13.1

linux linux kernel 2.6.12.1

linux linux kernel 2.6.12

linux linux kernel 2.6.11.2

linux linux kernel 2.6.11.12

linux linux kernel 2.6.0

linux linux kernel 2.4.36.4

linux linux kernel 2.4.32

linux linux kernel 2.4.33.2

linux linux kernel 2.4.34

linux linux kernel 2.4.36.8

linux linux kernel 2.4.20

linux linux kernel 2.4.22

linux linux kernel 2.4.5

linux linux kernel 2.4.4

linux linux kernel 2.4.37.3

linux linux kernel 2.4.16

linux linux kernel 2.4.36.9

linux linux kernel 2.4.34.5

linux linux kernel 2.4.35.2

linux linux kernel 2.4.3

linux linux kernel 2.4.33.1

linux linux kernel 2.4.9

linux linux kernel 2.4.12

linux linux kernel 2.4.13

linux linux kernel 2.4.37.5

linux linux kernel 2.4.14

linux linux kernel 2.4.34.4

linux linux kernel 2.4.35.4

linux linux kernel 2.4.2

linux linux kernel 2.4.34.1

linux linux kernel 2.2.27

linux linux kernel 2.6.13

linux linux kernel 2.6.12.6

linux linux kernel 2.6.11.9

linux linux kernel 2.6.11.8

linux linux kernel 2.6.11.11

linux linux kernel 2.6.11.10

linux linux kernel 2.4.36.5

linux linux kernel 2.4.36.1

linux linux kernel 2.4.33.5

linux linux kernel 2.4.33.7

linux linux kernel 2.4.36.6

linux linux kernel 2.4.24

linux linux kernel 2.4.6

linux linux kernel 2.4.37.4

linux linux kernel 2.4.17

linux linux kernel 2.4.34.6

linux linux kernel 2.4.34.3

linux linux kernel 2.4.1

linux linux kernel 2.4.8

linux linux kernel 2.4.7

Vendor Advisories

Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues in the Red HatEnterprise Linux 4 kernel are now available This security advisory has been rated as having important security impactby the Red Hat Security Response Team ...
The problem can be corrected by updating your system to the following package versions: ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-1017 Multiple overflows exist in the io_edgeport driver which might be usable as a denial of ...
The original update lacked recompiled ALSA modules against the new kernel ABI Furthermore, kernel-latest-24-sparc now correctly depends on the updated packages For completeness we're providing the original problem description: Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service ...

Exploits

/* source: wwwsecurityfocuscom/bid/15365/info Linux Kernel is reported prone to a local denial-of-service vulnerability This issue arises from a failure to properly unregister kernel resources when network devices are removed This issue allows local attackers to deny service to legitimate users Attackers may also be able to execute ar ...