imPC@ndo IT

Tracker / CVE-2004-0077

CVE-2004-0077

High 7.2

The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.

Affected products and versions

linux linux_kernel
netwosix netwosix_linux
redhat bigmem_kernel
redhat kernel
redhat kernel_doc
redhat kernel_source
trustix secure_linux

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References