CVE-2004-1068
published 2005-01-10CVE-2004-1068: A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges…
PriorityP416medium6.2CVSS 2.0
AVLACHAuNCCICAC
EPSS
0.39%
31.1th percentile
A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.
Affected
34 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.06.2MEDIUMAV:L/AC:H/Au:N/C:C/I:C/A:C
vendor_redhat6.2MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2004-12-15
CVE-2004-1137 Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
CAN-2004-0814:
Vitaly V. Bursov discovered a Denial of Service vulnerability in the "serio"
code; opening the same tty device twice and doing some particular operations on
it caused a kernel panic and/or a system lockup.
Fixing this vulnerability required a change in the Application Binary
Interface (ABI) of the kernel. This means that third party user installed
modules might not work any more with the new kernel, so this fixed kernel got
a new ABI version number. You have to recompile and reinstall all third party
modules.
CAN-2004-1016:
Paul Starzetz discovered a buffer overflow vulnerability in the "__scm_send"
function which handles the sending of UDP network packets. A wrong validity
check of the cmsghdr s
Red Hat
security flaw
vendor_redhat·2004-11-15·CVSS 6.2
CVE-2004-1068 [MEDIUM] security flaw
security flaw
A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.
GHSA
GHSA-8rhh-mg2p-8fh8: A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2
ghsa_unreviewed·2022-05-03
CVE-2004-1068 [MEDIUM] GHSA-8rhh-mg2p-8fh8: A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2
A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2004-1068 security flaw
bugzilla·2018-08-16·CVSS 6.2
CVE-2004-1068 [MEDIUM] CVE-2004-1068 security flaw
CVE-2004-1068 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.
Bugzilla
CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg (ia64)
bugzilla·2004-11-24
[HIGH] CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg (ia64)
CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg (ia64)
According to isec.pl on Nov19:
"There is a subtle race condition finally permitting a
non-root user to increment (up to 256 times) any arbitrary
location(s) in kernel space. The condition is not easy to
exploit since an attacker must trick kmalloc() to sleep on
allocation of a special chunk of memory and then convince the
scheduler to execute another thread. But it is feasible."
http://linux.bkbits.net:8080/linux-2.4/cset@4199284dnTPrPLR-yhP_rOBHXJlltA
Therefore fixed in 2.4.28
http://linux.bkbits.net:8080/linux-2.6/cset@419927f5Wy2IOKwcqE2S3DTNYSmCqQ
Therefore will be fixed in 2.6.10
CVE name applied for
Discussion:
An errata has been issued which should help the problem
described in this bug report. This report is ther
Bugzilla
CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg
bugzilla·2004-11-24
[HIGH] CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg
CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg
According to isec.pl on Nov19:
"There is a subtle race condition finally permitting a
non-root user to increment (up to 256 times) any arbitrary
location(s) in kernel space. The condition is not easy to
exploit since an attacker must trick kmalloc() to sleep on
allocation of a special chunk of memory and then convince the
scheduler to execute another thread. But it is feasible."
http://linux.bkbits.net:8080/linux-2.4/cset@4199284dnTPrPLR-yhP_rOBHXJlltA
Therefore fixed in 2.4.28
http://linux.bkbits.net:8080/linux-2.6/cset@419927f5Wy2IOKwcqE2S3DTNYSmCqQ
Therefore will be fixed in 2.6.10
CVE name applied for
Discussion:
An errata has been issued which should help the problem
described in this bug report. This report is therefore b
Bugzilla
CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg
bugzilla·2004-11-24
[HIGH] CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg
CAN-2004-1068 Missing serialisation in unix_dgram_recvmsg
According to isec.pl on Nov19:
"There is a subtle race condition finally permitting a
non-root user to increment (up to 256 times) any arbitrary
location(s) in kernel space. The condition is not easy to
exploit since an attacker must trick kmalloc() to sleep on
allocation of a special chunk of memory and then convince the
scheduler to execute another thread. But it is feasible."
http://linux.bkbits.net:8080/linux-2.4/cset@4199284dnTPrPLR-yhP_rOBHXJlltA
Therefore fixed in 2.4.28
http://linux.bkbits.net:8080/linux-2.6/cset@419927f5Wy2IOKwcqE2S3DTNYSmCqQ
Therefore will be fixed in 2.6.10
CVE name applied for
Discussion:
A fix for this problem has just been committed to the RHEL3 E4
patch pool this evening (in kernel version 2.4.21
ftp://patches.sgi.com/support/free/security/advisories/20060402-01-Uhttp://marc.info/?l=bugtraq&m=110306397320336&w=2http://secunia.com/advisories/19607http://secunia.com/advisories/20162http://secunia.com/advisories/20163http://secunia.com/advisories/20202http://secunia.com/advisories/20338http://www.debian.org/security/2006/dsa-1067http://www.debian.org/security/2006/dsa-1069http://www.debian.org/security/2006/dsa-1070http://www.debian.org/security/2006/dsa-1082http://www.mandriva.com/security/advisories?name=MDKSA-2005:022http://www.novell.com/linux/security/advisories/2004_44_kernel.htmlhttp://www.redhat.com/support/errata/RHSA-2004-504.htmlhttp://www.redhat.com/support/errata/RHSA-2004-505.htmlhttp://www.redhat.com/support/errata/RHSA-2004-537.htmlhttp://www.securityfocus.com/archive/1/381689http://www.securityfocus.com/bid/11715https://bugzilla.fedora.us/show_bug.cgi?id=2336https://exchange.xforce.ibmcloud.com/vulnerabilities/18230https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11384ftp://patches.sgi.com/support/free/security/advisories/20060402-01-Uhttp://marc.info/?l=bugtraq&m=110306397320336&w=2http://secunia.com/advisories/19607http://secunia.com/advisories/20162http://secunia.com/advisories/20163http://secunia.com/advisories/20202http://secunia.com/advisories/20338http://www.debian.org/security/2006/dsa-1067http://www.debian.org/security/2006/dsa-1069http://www.debian.org/security/2006/dsa-1070http://www.debian.org/security/2006/dsa-1082http://www.mandriva.com/security/advisories?name=MDKSA-2005:022http://www.novell.com/linux/security/advisories/2004_44_kernel.htmlhttp://www.redhat.com/support/errata/RHSA-2004-504.htmlhttp://www.redhat.com/support/errata/RHSA-2004-505.htmlhttp://www.redhat.com/support/errata/RHSA-2004-537.htmlhttp://www.securityfocus.com/archive/1/381689http://www.securityfocus.com/bid/11715https://bugzilla.fedora.us/show_bug.cgi?id=2336https://exchange.xforce.ibmcloud.com/vulnerabilities/18230https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11384
2005-01-10
Published