4.9
CVSSv2

CVE-2005-3783

Published: 23/11/2005 Updated: 07/11/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The ptrace functionality (ptrace.c) in Linux kernel 2.6 prior to 2.6.14.2, using CLONE_THREAD, does not use the thread group ID to check whether it is attaching to itself, which allows local users to cause a denial of service (crash).

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.14

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.11.10

linux linux kernel 2.6.1

linux linux kernel 2.6.13

linux linux kernel 2.6.11.8

linux linux kernel 2.6.10

linux linux kernel 2.6.11.6

linux linux kernel 2.6.11.11

linux linux kernel 2.6.3

linux linux kernel 2.6.4

linux linux kernel 2.6.11.5

linux linux kernel 2.6.2

linux linux kernel 2.6.8

linux linux kernel 2.6.14.1

linux linux kernel 2.6.12.1

linux linux kernel 2.6.11.9

linux linux kernel 2.6.0

linux linux kernel 2.6.12.2

linux linux kernel 2.6.12.4

linux linux kernel 2.6.11.3

linux linux kernel 2.6.12.3

linux linux kernel 2.6.7

linux linux kernel 2.6.9

linux linux kernel 2.6.11.7

linux linux kernel 2.6.8.1

linux linux kernel 2.6.11.4

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.1

linux linux kernel 2.6.6

linux linux kernel 2.6.12

Vendor Advisories

Rudolf Polzer reported an abuse of the ‘loadkeys’ command By redefining one or more keys and tricking another user (like root) into logging in on a text console and typing something that involves the redefined keys, a local user could cause execution of arbitrary commands with the privileges of the target user The updated kernel restrict ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-1017 Multiple overflows exist in the io_edgeport driver which might be usable as a denial of ...
The original update lacked recompiled ALSA modules against the new kernel ABI Furthermore, kernel-latest-24-sparc now correctly depends on the updated packages For completeness we're providing the original problem description: Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service ...