CVE
- Id
- 9496
- CVE No.
- CVE-2004-1068
- Status
- Candidate
- Description
- A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.
- Phase
- Assigned (20041129)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 63970 | 9496 | CVE-2004-1068 | BUGTRAQ:20041119 Addendum, recent Linux <= 2.4.27 vulnerabilities | View |
| 63971 | 9496 | CVE-2004-1068 | URL:http://www.securityfocus.com/archive/1/381689 | View |
| 63972 | 9496 | CVE-2004-1068 | DEBIAN:DSA-1070 | View |
| 63973 | 9496 | CVE-2004-1068 | URL:http://www.debian.org/security/2006/dsa-1070 | View |
| 63974 | 9496 | CVE-2004-1068 | DEBIAN:DSA-1067 | View |
| 63975 | 9496 | CVE-2004-1068 | URL:http://www.debian.org/security/2006/dsa-1067 | View |
| 63976 | 9496 | CVE-2004-1068 | DEBIAN:DSA-1069 | View |
| 63977 | 9496 | CVE-2004-1068 | URL:http://www.debian.org/security/2006/dsa-1069 | View |
| 63978 | 9496 | CVE-2004-1068 | DEBIAN:DSA-1082 | View |
| 63979 | 9496 | CVE-2004-1068 | URL:http://www.debian.org/security/2006/dsa-1082 | View |
| 63980 | 9496 | CVE-2004-1068 | FEDORA:FLSA:2336 | View |
| 63981 | 9496 | CVE-2004-1068 | URL:https://bugzilla.fedora.us/show_bug.cgi?id=2336 | View |
| 63982 | 9496 | CVE-2004-1068 | MANDRAKE:MDKSA-2005:022 | View |
| 63983 | 9496 | CVE-2004-1068 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:022 | View |
| 63984 | 9496 | CVE-2004-1068 | REDHAT:RHSA-2004:537 | View |
| 63985 | 9496 | CVE-2004-1068 | URL:http://www.redhat.com/support/errata/RHSA-2004-537.html | View |
| 63986 | 9496 | CVE-2004-1068 | BUGTRAQ:20041214 [USN-38-1] Linux kernel vulnerabilities | View |
| 63987 | 9496 | CVE-2004-1068 | URL:http://marc.info/?l=bugtraq&m=110306397320336&w=2 | View |
| 63988 | 9496 | CVE-2004-1068 | REDHAT:RHSA-2004:504 | View |
| 63989 | 9496 | CVE-2004-1068 | URL:http://www.redhat.com/support/errata/RHSA-2004-504.html | View |
| 63990 | 9496 | CVE-2004-1068 | REDHAT:RHSA-2004:505 | View |
| 63991 | 9496 | CVE-2004-1068 | URL:http://www.redhat.com/support/errata/RHSA-2004-505.html | View |
| 63992 | 9496 | CVE-2004-1068 | SGI:20060402-01-U | View |
| 63993 | 9496 | CVE-2004-1068 | URL:ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U | View |
| 63994 | 9496 | CVE-2004-1068 | SUSE:SUSE-SA:2004:044 | View |
| 63995 | 9496 | CVE-2004-1068 | URL:http://www.novell.com/linux/security/advisories/2004_44_kernel.html | View |
| 63996 | 9496 | CVE-2004-1068 | BID:11715 | View |
| 63997 | 9496 | CVE-2004-1068 | URL:http://www.securityfocus.com/bid/11715 | View |
| 63998 | 9496 | CVE-2004-1068 | OVAL:oval:org.mitre.oval:def:11384 | View |
| 63999 | 9496 | CVE-2004-1068 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11384 | View |
| 64000 | 9496 | CVE-2004-1068 | SECUNIA:20162 | View |
| 64001 | 9496 | CVE-2004-1068 | URL:http://secunia.com/advisories/20162 | View |
| 64002 | 9496 | CVE-2004-1068 | SECUNIA:20163 | View |
| 64003 | 9496 | CVE-2004-1068 | URL:http://secunia.com/advisories/20163 | View |
| 64004 | 9496 | CVE-2004-1068 | SECUNIA:20202 | View |
| 64005 | 9496 | CVE-2004-1068 | URL:http://secunia.com/advisories/20202 | View |
| 64006 | 9496 | CVE-2004-1068 | SECUNIA:20338 | View |
| 64007 | 9496 | CVE-2004-1068 | URL:http://secunia.com/advisories/20338 | View |
| 64008 | 9496 | CVE-2004-1068 | SECUNIA:19607 | View |
| 64009 | 9496 | CVE-2004-1068 | URL:http://secunia.com/advisories/19607 | View |
| 64010 | 9496 | CVE-2004-1068 | XF:linux-afunix-race-condition(18230) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63193 | JVNDB-2004-000535 | SELinux の sock_dgram_sendmsg() 関数におけるサービス運用妨害 (DoS) の脆弱性 | Linux Kernel に含まれる SELinux には、sock_dgram_sendmsg() 関数において "SOCK_SEQPACKET" UNIX ドメインソケットの取り扱いに不備が存在するため、競合状態が発生する脆弱性が存在します。 | CVE-2004-1069 | 9496 | 1.2 | http://jvndb.jvn.jp/ja/contents/2004/JVNDB-2004-000535.html | View |