CVE-2004-1333
published 2004-12-15CVE-2004-1333: Integer overflow in the vc_resize function in the Linux kernel 2.4 and 2.6 before 2.6.10 allows local users to cause a denial of service (kernel crash) via a…
PriorityP414low2.1CVSS 2.0
AVLACLAuNCNINAP
EXPLOIT
EPSS
0.96%
57.5th percentile
Integer overflow in the vc_resize function in the Linux kernel 2.4 and 2.6 before 2.6.10 allows local users to cause a denial of service (kernel crash) via a short new screen value, which leads to a buffer overflow.
Affected
48 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
ghsa5.0MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Spring Framework Inefficient Regular Expression Complexity
ghsa·2022-05-02·CVSS 5.0
CVE-2009-1190 [MEDIUM] CWE-1333 Spring Framework Inefficient Regular Expression Complexity
Spring Framework Inefficient Regular Expression Complexity
Algorithmic complexity vulnerability in the java.util.regex.Pattern.compile method in Sun Java Development Kit (JDK) before 1.6, when used with spring.jar in SpringSource Spring Framework 1.1.0 through 2.5.6 and 3.0.0.M1 through 3.0.0.M2 and dm Server 1.0.0 through 1.0.2, allows remote attackers to cause a denial of service (CPU consumption) via serializable data with a long regex string containing multiple optional groups, a related issue to CVE-2004-2540.
GHSA
GHSA-jhcc-2gg3-8q6c: Integer overflow in the vc_resize function in the Linux kernel 2
ghsa_unreviewed·2022-04-29
CVE-2004-1333 [LOW] GHSA-jhcc-2gg3-8q6c: Integer overflow in the vc_resize function in the Linux kernel 2
Integer overflow in the vc_resize function in the Linux kernel 2.4 and 2.6 before 2.6.10 allows local users to cause a denial of service (kernel crash) via a short new screen value, which leads to a buffer overflow.
No detection rules found.
No writeups or analysis indexed.
http://secunia.com/advisories/17826http://secunia.com/advisories/20162http://secunia.com/advisories/20163http://secunia.com/advisories/20202http://secunia.com/advisories/20338http://www.debian.org/security/2006/dsa-1067http://www.debian.org/security/2006/dsa-1069http://www.debian.org/security/2006/dsa-1070http://www.debian.org/security/2006/dsa-1082http://www.guninski.com/where_do_you_want_billg_to_go_today_2.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2005:218http://www.mandriva.com/security/advisories?name=MDKSA-2005:219http://www.novell.com/linux/security/advisories/2005_18_kernel.htmlhttp://www.securityfocus.com/bid/11956http://www.securitytrap.com/mail/full-disclosure/2004/Dec/0323.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532https://exchange.xforce.ibmcloud.com/vulnerabilities/18523https://usn.ubuntu.com/47-1/http://secunia.com/advisories/17826http://secunia.com/advisories/20162http://secunia.com/advisories/20163http://secunia.com/advisories/20202http://secunia.com/advisories/20338http://www.debian.org/security/2006/dsa-1067http://www.debian.org/security/2006/dsa-1069http://www.debian.org/security/2006/dsa-1070http://www.debian.org/security/2006/dsa-1082http://www.guninski.com/where_do_you_want_billg_to_go_today_2.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2005:218http://www.mandriva.com/security/advisories?name=MDKSA-2005:219http://www.novell.com/linux/security/advisories/2005_18_kernel.htmlhttp://www.securityfocus.com/bid/11956http://www.securitytrap.com/mail/full-disclosure/2004/Dec/0323.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532https://exchange.xforce.ibmcloud.com/vulnerabilities/18523https://usn.ubuntu.com/47-1/
2004-12-15
Published