CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9500  CVE-2004-1072  Candidate  The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows that allow local users to cause a denial of service (hang) and possibly execute arbitrary code.  Assigned (20041129)  None (candidate not yet proposed)    View
9499  CVE-2004-1071  Candidate  The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly handle a failed call to the mmap function, which causes an incorrect mapped image and may allow local users to execute arbitrary code.  Assigned (20041129)  None (candidate not yet proposed)    View
9498  CVE-2004-1070  Candidate  The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allow local users to modify sensitive memory in a setuid program and execute arbitrary code.  Assigned (20041129)  None (candidate not yet proposed)    View
9497  CVE-2004-1069  Candidate  Race condition in SELinux 2.6.x through 2.6.9 allows local users to cause a denial of service (kernel crash) via SOCK_SEQPACKET unix domain sockets, which are not properly handled in the sock_dgram_sendmsg function.  Assigned (20041129)  None (candidate not yet proposed)    View
9496  CVE-2004-1068  Candidate  A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.  Assigned (20041129)  None (candidate not yet proposed)    View

Page 19044 of 20943, showing 5 records out of 104715 total, starting on record 95216, ending on 95220

Actions