CVE-2004-1057Kernel vulnerability

5 documents4 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 81.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 21
Latest updateApr 29

Description

Multiple drivers in Linux kernel 2.4.19 and earlier do not properly mark memory with the VM_IO flag, which causes incorrect reference counts and may lead to a denial of service (kernel panic) when accessing freed kernel pages.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDlinux/linux_kernel2.4.19+86

Also affects: Enterprise Linux 2.1, 3.0, 4.0

Patches

🔴Vulnerability Details

1
GHSA
GHSA-gw46-hc5v-7grj: Multiple drivers in Linux kernel 22022-04-29

📋Vendor Advisories

1
Red Hat
security flaw2005-01-07

💬Community

2
Bugzilla
CVE-2004-1057 security flaw2018-08-16
Bugzilla
CVE-2004-1057 VM_IO refcount issue2004-11-01