CVE
- Id
- 8605
- CVE No.
- CVE-2004-0177
- Status
- Candidate
- Description
- The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an information leak in which in-memory data is written to the device for the ext3 file system, which allows privileged users to obtain portions of kernel memory by reading the raw device.
- Phase
- Assigned (20040225)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 53577 | 8605 | CVE-2004-0177 | CONECTIVA:CLA-2004:846 | View |
| 53578 | 8605 | CVE-2004-0177 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000846 | View |
| 53579 | 8605 | CVE-2004-0177 | DEBIAN:DSA-479 | View |
| 53580 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-479 | View |
| 53581 | 8605 | CVE-2004-0177 | DEBIAN:DSA-480 | View |
| 53582 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-480 | View |
| 53583 | 8605 | CVE-2004-0177 | DEBIAN:DSA-481 | View |
| 53584 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-481 | View |
| 53585 | 8605 | CVE-2004-0177 | DEBIAN:DSA-482 | View |
| 53586 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-482 | View |
| 53587 | 8605 | CVE-2004-0177 | DEBIAN:DSA-489 | View |
| 53588 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-489 | View |
| 53589 | 8605 | CVE-2004-0177 | DEBIAN:DSA-491 | View |
| 53590 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-491 | View |
| 53591 | 8605 | CVE-2004-0177 | DEBIAN:DSA-495 | View |
| 53592 | 8605 | CVE-2004-0177 | URL:http://www.debian.org/security/2004/dsa-495 | View |
| 53593 | 8605 | CVE-2004-0177 | ENGARDE:ESA-20040428-004 | View |
| 53594 | 8605 | CVE-2004-0177 | URL:http://www.linuxsecurity.com/advisories/engarde_advisory-4285.html | View |
| 53595 | 8605 | CVE-2004-0177 | FEDORA:FLSA:2336 | View |
| 53596 | 8605 | CVE-2004-0177 | URL:https://bugzilla.fedora.us/show_bug.cgi?id=2336 | View |
| 53597 | 8605 | CVE-2004-0177 | GENTOO:GLSA-200407-02 | View |
| 53598 | 8605 | CVE-2004-0177 | URL:http://security.gentoo.org/glsa/glsa-200407-02.xml | View |
| 53599 | 8605 | CVE-2004-0177 | MANDRAKE:MDKSA-2004:029 | View |
| 53600 | 8605 | CVE-2004-0177 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2004:029 | View |
| 53601 | 8605 | CVE-2004-0177 | REDHAT:RHSA-2004:166 | View |
| 53602 | 8605 | CVE-2004-0177 | URL:http://rhn.redhat.com/errata/RHSA-2004-166.html | View |
| 53603 | 8605 | CVE-2004-0177 | REDHAT:RHSA-2005:293 | View |
| 53604 | 8605 | CVE-2004-0177 | URL:http://www.redhat.com/support/errata/RHSA-2005-293.html | View |
| 53605 | 8605 | CVE-2004-0177 | REDHAT:RHSA-2004:504 | View |
| 53606 | 8605 | CVE-2004-0177 | URL:http://www.redhat.com/support/errata/RHSA-2004-504.html | View |
| 53607 | 8605 | CVE-2004-0177 | REDHAT:RHSA-2004:505 | View |
| 53608 | 8605 | CVE-2004-0177 | URL:http://www.redhat.com/support/errata/RHSA-2004-505.html | View |
| 53609 | 8605 | CVE-2004-0177 | TRUSTIX:2004-0020 | View |
| 53610 | 8605 | CVE-2004-0177 | URL:http://marc.info/?l=bugtraq&m=108213675028441&w=2 | View |
| 53611 | 8605 | CVE-2004-0177 | MISC:http://linux.bkbits.net:8080/linux-2.4/cset@4056b368s6vpJbGWxDD_LhQNYQrdzQ | View |
| 53612 | 8605 | CVE-2004-0177 | CIAC:O-121 | View |
| 53613 | 8605 | CVE-2004-0177 | URL:http://www.ciac.org/ciac/bulletins/o-121.shtml | View |
| 53614 | 8605 | CVE-2004-0177 | CIAC:O-126 | View |
| 53615 | 8605 | CVE-2004-0177 | URL:http://www.ciac.org/ciac/bulletins/o-126.shtml | View |
| 53616 | 8605 | CVE-2004-0177 | CIAC:O-127 | View |
| 53617 | 8605 | CVE-2004-0177 | URL:http://www.ciac.org/ciac/bulletins/o-127.shtml | View |
| 53618 | 8605 | CVE-2004-0177 | BID:10152 | View |
| 53619 | 8605 | CVE-2004-0177 | URL:http://www.securityfocus.com/bid/10152 | View |
| 53620 | 8605 | CVE-2004-0177 | OVAL:oval:org.mitre.oval:def:10556 | View |
| 53621 | 8605 | CVE-2004-0177 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10556 | View |
| 53622 | 8605 | CVE-2004-0177 | XF:linux-ext3-info-disclosure(15867) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 62804 | JVNDB-2004-000145 | Linux Kernel の OSS サウンドドライバにおけるカーネルクラッシュの脆弱性 | Linux Kernel の OSS サウンドドライバには、SB16 用のドライバの取り扱いの不備のため、カーネルがクラッシュしてしまう脆弱性が存在します。 | CVE-2004-0178 | 8605 | 2.1 | http://jvndb.jvn.jp/ja/contents/2004/JVNDB-2004-000145.html | View |