CVE-2005-2459
published 2005-08-23CVE-2005-2459: The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a…
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
4.63%
90.8th percentile
The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointer dereference, a different vulnerability than CVE-2005-2458.
Affected
26 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2005-08-19
CVE-2005-2548 Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
David Howells discovered a local Denial of Service vulnerability in
the key session joining function. Under certain user-triggerable
conditions, a semaphore was not released properly, which caused
processes which also attempted to join a key session to hang forever.
This only affects Ubuntu 5.04 (Hoary Hedgehog). (CAN-2005-2098)
David Howells discovered a local Denial of Service vulnerability in
the keyring allocator. A local attacker could exploit this to crash
the kernel by attempting to add a specially crafted invalid keyring.
This only affects Ubuntu 5.04 (Hoary Hedgehog). (CAN-2005-2099)
Balazs Scheidler discovered a local Denial of Service vulnerability in
the xfrm_compile_policy() function. By calling sets
GHSA
GHSA-g8ph-8hmr-373j: The huft_build function in inflate
ghsa_unreviewed·2022-05-01·CVSS 5.0
CVE-2005-2459 [MEDIUM] CWE-476 GHSA-g8ph-8hmr-373j: The huft_build function in inflate
The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointer dereference, a different vulnerability than CVE-2005-2458.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2005-2458 gzip/zlib flaws (ipf)
bugzilla·2005-08-11·CVSS 5.0
CVE-2005-2458 [MEDIUM] CVE-2005-2458 gzip/zlib flaws (ipf)
CVE-2005-2458 gzip/zlib flaws (ipf)
+++ This bug was initially created as a clone of Bug #165679 +++
Tim Yamin from Gentoo noticed that some older security related bugs in the
decompression code had not been fixed in the kernel. This is fairly minor as
there are few places where the kernel decompresses arbitrary data. However it
could be a problem for things like zisofs (if someone mounts a malicious
filesystem), perhaps cslip or ppp too).
CAN-2005-2458
http://sources.redhat.com/ml/bug-gnu-utils/1999-06/msg00183.html
impact=low,source=vendorsec,public=19990625
CAN-2005-2459
http://bugs.gentoo.org/show_bug.cgi?id=94584
impact=low,source=vendorsec,public=20050531
Fix for 2.6 is here, pretty much identical for 2.4:
http://linux.bkbits.net:8080/linux-2.6/cset@42f3f4e9KIoV6pLtA430xgwjKh2V
Bugzilla
CVE-2005-2458 gzip/zlib flaws
bugzilla·2005-08-11·CVSS 5.0
CVE-2005-2458 [MEDIUM] CVE-2005-2458 gzip/zlib flaws
CVE-2005-2458 gzip/zlib flaws
+++ This bug was initially created as a clone of Bug #165679 +++
Tim Yamin from Gentoo noticed that some older security related bugs in the
decompression code had not been fixed in the kernel. This is fairly minor as
there are few places where the kernel decompresses arbitrary data. However it
could be a problem for things like zisofs (if someone mounts a malicious
filesystem), perhaps cslip or ppp too).
CAN-2005-2458
http://sources.redhat.com/ml/bug-gnu-utils/1999-06/msg00183.html
impact=low,source=vendorsec,public=19990625
CAN-2005-2459
http://bugs.gentoo.org/show_bug.cgi?id=94584
impact=low,source=vendorsec,public=20050531
Fix for 2.6 is here, pretty much identical for 2.4:
http://linux.bkbits.net:8080/linux-2.6/cset@42f3f4e9KIoV6pLtA430xgwjKh2V7g
D
Bugzilla
CVE-2005-2458 gzip/zlib flaws
bugzilla·2005-08-11·CVSS 5.0
CVE-2005-2458 [MEDIUM] CVE-2005-2458 gzip/zlib flaws
CVE-2005-2458 gzip/zlib flaws
Tim Yamin from Gentoo noticed that some older security related bugs in the
decompression code had not been fixed in the kernel. This is fairly minor as
there are few places where the kernel decompresses arbitrary data. However it
could be a problem for things like zisofs (if someone mounts a malicious
filesystem), perhaps cslip or ppp too).
CAN-2005-2458
http://sources.redhat.com/ml/bug-gnu-utils/1999-06/msg00183.html
impact=low,source=vendorsec,public=19990625
CAN-2005-2459
http://bugs.gentoo.org/show_bug.cgi?id=94584
impact=low,source=vendorsec,public=20050531
Fix for 2.6 is here, pretty much identical for 2.4:
http://linux.bkbits.net:8080/linux-2.6/cset@42f3f4e9KIoV6pLtA430xgwjKh2V7g
Discussion:
Sergey Vlasov has done some analysis on these issues an
http://bugs.gentoo.org/show_bug.cgi?id=94584http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5http://secunia.com/advisories/16355/http://secunia.com/advisories/16500http://secunia.com/advisories/17826http://secunia.com/advisories/17918http://secunia.com/advisories/18056http://secunia.com/advisories/18059http://www.debian.org/security/2005/dsa-921http://www.debian.org/security/2005/dsa-922http://www.mandriva.com/security/advisories?name=MDKSA-2005:219http://www.mandriva.com/security/advisories?name=MDKSA-2005:220http://www.novell.com/linux/security/advisories/2005_50_kernel.htmlhttp://www.securityfocus.com/archive/1/419522/100/0/threadedhttp://www.securityfocus.com/bid/14720https://usn.ubuntu.com/169-1/http://bugs.gentoo.org/show_bug.cgi?id=94584http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5http://secunia.com/advisories/16355/http://secunia.com/advisories/16500http://secunia.com/advisories/17826http://secunia.com/advisories/17918http://secunia.com/advisories/18056http://secunia.com/advisories/18059http://www.debian.org/security/2005/dsa-921http://www.debian.org/security/2005/dsa-922http://www.mandriva.com/security/advisories?name=MDKSA-2005:219http://www.mandriva.com/security/advisories?name=MDKSA-2005:220http://www.novell.com/linux/security/advisories/2005_50_kernel.htmlhttp://www.securityfocus.com/archive/1/419522/100/0/threadedhttp://www.securityfocus.com/bid/14720https://usn.ubuntu.com/169-1/
2005-08-23
Published