CVE-2005-1761
published 2005-08-05CVE-2005-1761: Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptrace and the restore_sigcontext function.
PriorityP49low2.1CVSS 2.0
AVLACLAuNCNINAP
EPSS
0.46%
36.5th percentile
Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptrace and the restore_sigcontext function.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| novell | linux_desktop | — | — |
| novell | open_enterprise_server | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
| suse | suse_linux | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pqrx-h8gf-58qg: The Linux kernel before 2
ghsa_unreviewed·2022-05-01·CVSS 2.1
CVE-2005-0136 [LOW] GHSA-pqrx-h8gf-58qg: The Linux kernel before 2
The Linux kernel before 2.6.11 on the Itanium IA64 platform has certain "ptrace corner cases" that allow local users to cause a denial of service (crash) via crafted syscalls, possibly related to MCA/INIT, a different vulnerability than CVE-2005-1761.
GHSA
GHSA-8p96-4fvh-xrwg: Linux kernel 2
ghsa_unreviewed·2022-05-01
CVE-2005-1761 [LOW] CWE-20 GHSA-8p96-4fvh-xrwg: Linux kernel 2
Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptrace and the restore_sigcontext function.
Red Hat
security flaw
vendor_redhat·2005-06-21·CVSS 2.1
CVE-2005-1761 [LOW] security flaw
security flaw
Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptrace and the restore_sigcontext function.
Red Hat
security flaw
vendor_redhat·2005-03-11·CVSS 2.1
CVE-2005-0136 [LOW] security flaw
security flaw
The Linux kernel before 2.6.11 on the Itanium IA64 platform has certain "ptrace corner cases" that allow local users to cause a denial of service (crash) via crafted syscalls, possibly related to MCA/INIT, a different vulnerability than CVE-2005-1761.
No detection rules found.
Bugzilla
CVE-2005-1761 security flaw
bugzilla·2018-08-16·CVSS 2.1
CVE-2005-1761 [LOW] CVE-2005-1761 security flaw
CVE-2005-1761 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptrace and the restore_sigcontext function.
Bugzilla
CVE-2005-0136 security flaw
bugzilla·2018-08-16·CVSS 2.1
CVE-2005-0136 [LOW] CVE-2005-0136 security flaw
CVE-2005-0136 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
The Linux kernel before 2.6.11 on the Itanium IA64 platform has certain "ptrace corner cases" that allow local users to cause a denial of service (crash) via crafted syscalls, possibly related to MCA/INIT, a different vulnerability than CVE-2005-1761.
Bugzilla
CVE-2005-1761 local user can use ptrace to crash system
bugzilla·2005-06-08·CVSS 2.1
CVE-2005-1761 [LOW] CVE-2005-1761 local user can use ptrace to crash system
CVE-2005-1761 local user can use ptrace to crash system
Also, as mentioned in bug 159671, we still don't have an exploit to verify the
fix. Although I agree that this is a pretty clear fix, with low risk of side
effects.
Discussion:
Public now as of 20050621:10, removing security sensitive tag
---
A fix for this problem has just been committed to the RHEL3 U6
patch pool this evening (in kernel version 2.4.21-32.10.EL).
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA
Bugzilla
Multiple Kernel vulnerabilities
bugzilla·2005-05-11
[MEDIUM] Multiple Kernel vulnerabilities
Multiple Kernel vulnerabilities
From Bugzilla Helper:
User-Agent: Mozilla/5.0 (Mozilla rulez!)
Description of problem:
Paul Starzetz of iSEC has found yet another bug in binfmt_elf.c. It can be abused to crash the kernel, perhaps even to break into the kernel land. See the advisory for details.
Version-Release number of selected component (if applicable):
How reproducible:
Didn't try
Steps to Reproduce:
Additional info:
I've got a quick and dirty patch. I'll submit it ASAP.
Discussion:
Grr...Bugzilla assigned the bug to [email protected] rather than to
[email protected]
---
Created attachment 114264
The patch for CAN-2005-1263
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
This patch can be applied to FL kernel 2.4.20-43:
402e548b02382c015d6f5e5704370a1ba546598b
li
http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=4ea78729b8dbfc400fe165a57b90a394a7275a54http://secunia.com/advisories/17002http://secunia.com/advisories/17073http://secunia.com/advisories/18056http://secunia.com/advisories/19369http://securitytracker.com/id?1014275http://www.debian.org/security/2005/dsa-922http://www.debian.org/security/2006/dsa-1018http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.1http://www.novell.com/linux/security/advisories/2005_44_kernel.htmlhttp://www.redhat.com/support/errata/RHSA-2005-514.htmlhttp://www.redhat.com/support/errata/RHSA-2005-551.htmlhttp://www.redhat.com/support/errata/RHSA-2005-663.htmlhttp://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/bid/14051http://www.vupen.com/english/advisories/2005/1878https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10487http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=4ea78729b8dbfc400fe165a57b90a394a7275a54http://secunia.com/advisories/17002http://secunia.com/advisories/17073http://secunia.com/advisories/18056http://secunia.com/advisories/19369http://securitytracker.com/id?1014275http://www.debian.org/security/2005/dsa-922http://www.debian.org/security/2006/dsa-1018http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.1http://www.novell.com/linux/security/advisories/2005_44_kernel.htmlhttp://www.redhat.com/support/errata/RHSA-2005-514.htmlhttp://www.redhat.com/support/errata/RHSA-2005-551.htmlhttp://www.redhat.com/support/errata/RHSA-2005-663.htmlhttp://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/bid/14051http://www.vupen.com/english/advisories/2005/1878https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10487
2005-08-05
Published