4.9
CVSSv2

CVE-2006-1055

Published: 05/04/2006 Updated: 07/11/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The fill_write_buffer function in sysfs/file.c in Linux kernel 2.6.12 up to versions prior to 2.6.17-rc1 does not zero terminate a buffer when a length of PAGE_SIZE or more is requested, which might allow local users to cause a denial of service (crash) by causing an out-of-bounds read.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.12

linux linux kernel 2.6.14

linux linux kernel 2.6.15.3

linux linux kernel 2.6.16

linux linux kernel 2.6.13

linux linux kernel 2.6.15

linux linux kernel 2.6.13.3

linux linux kernel 2.6.14.4

linux linux kernel 2.6.14.3

linux linux kernel 2.6.15.1

linux linux kernel 2.6.14.5

linux linux kernel 2.6.13.2

linux linux kernel 2.6.17

linux linux kernel 2.6.14.1

linux linux kernel 2.6.12.5

linux linux kernel 2.6.12.1

linux linux kernel 2.6.13.4

linux linux kernel 2.6.12.2

linux linux kernel 2.6.15.2

linux linux kernel 2.6.12.4

linux linux kernel 2.6.12.3

linux linux kernel 2.6.15.4

linux linux kernel 2.6.12.6

linux linux kernel 2.6.14.2

linux linux kernel 2.6.15.5

linux linux kernel 2.6.13.1

Vendor Advisories

An integer overflow was discovered in the do_replace() function A local user process with the CAP_NET_ADMIN capability could exploit this to execute arbitrary commands with full root privileges However, none of Ubuntu’s supported packages use this capability with any non-root user, so this only affects you if you use some third party software l ...
The sys_mbind() function did not properly verify the validity of the ‘maxnod’ argument A local user could exploit this to trigger a buffer overflow, which caused a kernel crash (CVE-2006-0557) ...