CVE-2004-1151Improper Restriction of Operations within the Bounds of a Memory Buffer in Kernel

4 documents4 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 64.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 10
Latest updateApr 29

Description

Multiple buffer overflows in the (1) sys32_ni_syscall and (2) sys32_vm86_warning functions in sys_ia32.c for Linux 2.6.x may allow local attackers to modify kernel memory and gain privileges.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDlinux/linux_kernel12 versions+11

Also affects: Ubuntu Linux 4.1

🔴Vulnerability Details

2
GHSA
GHSA-pjw5-65rm-49c2: Multiple buffer overflows in the (1) sys32_ni_syscall and (2) sys32_vm86_warning functions in sys_ia322022-04-29
CVEList
CVE-2004-1151: Multiple buffer overflows in the (1) sys32_ni_syscall and (2) sys32_vm86_warning functions in sys_ia322004-12-08

📋Vendor Advisories

1
Ubuntu
Linux kernel vulnerabilities2004-12-15