imPC@ndo IT

Tracker / CVE-2004-0535

CVE-2004-0535

Low 2.1

The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. NOTE: this issue was originally incorrectly reported as a "buffer overflow" by some sources.

Affected products and versions

conectiva linux
engardelinux secure_community
engardelinux secure_linux
gentoo linux
linux linux_kernel
mandrakesoft mandrake_linux
mandrakesoft mandrake_linux_corporate_server
mandrakesoft mandrake_multi_network_firewall
suse suse_email_server
suse suse_linux
suse suse_linux_admin-cd_for_firewall
suse suse_linux_connectivity_server
suse suse_linux_database_server
suse suse_linux_firewall_cd
suse suse_linux_firewall_live-cd
suse suse_linux_office_server
suse suse_office_server

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References