CVE-2005-2492
published 2005-09-14CVE-2005-2492: The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary…
PriorityP414low3.6CVSS 2.0
AVLACLAuNCPINAP
EPSS
0.45%
36.6th percentile
The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:P/I:N/A:P
vendor_redhat3.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mqcr-733m-h5pc: The raw_sendmsg function in the Linux kernel 2
ghsa_unreviewed·2022-05-01
CVE-2005-2492 [LOW] GHSA-mqcr-733m-h5pc: The raw_sendmsg function in the Linux kernel 2
The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.
Red Hat
security flaw
vendor_redhat·2005-09-09·CVSS 3.6
CVE-2005-2492 [LOW] security flaw
security flaw
The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2005-09-09
CVE-2005-2490 Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
Oleg Nesterov discovered a local Denial of Service vulnerability in
the timer handling. When a non group-leader thread called exec() to
execute a different program while an itimer was pending, the timer
expiry would signal the old group leader task, which did not exist any
more. This caused a kernel panic. This vulnerability only affects
Ubuntu 5.04. (CAN-2005-1913)
Al Viro discovered that the sendmsg() function did not sufficiently
validate its input data. By calling sendmsg() and at the same time
modifying the passed message in another thread, he could exploit this
to execute arbitrary commands with kernel privileges. This only
affects the amd64 bit platform. (CAN-2005-2490)
Al Viro discovered a vulnerability i
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2005-2492 security flaw
bugzilla·2018-08-16·CVSS 3.6
CVE-2005-2492 [LOW] CVE-2005-2492 security flaw
CVE-2005-2492 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.
Bugzilla
Multiple Kernel vulnerabilities
bugzilla·2005-05-11
[MEDIUM] Multiple Kernel vulnerabilities
Multiple Kernel vulnerabilities
From Bugzilla Helper:
User-Agent: Mozilla/5.0 (Mozilla rulez!)
Description of problem:
Paul Starzetz of iSEC has found yet another bug in binfmt_elf.c. It can be abused to crash the kernel, perhaps even to break into the kernel land. See the advisory for details.
Version-Release number of selected component (if applicable):
How reproducible:
Didn't try
Steps to Reproduce:
Additional info:
I've got a quick and dirty patch. I'll submit it ASAP.
Discussion:
Grr...Bugzilla assigned the bug to [email protected] rather than to
[email protected]
---
Created attachment 114264
The patch for CAN-2005-1263
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
This patch can be applied to FL kernel 2.4.20-43:
402e548b02382c015d6f5e5704370a1ba546598b
li
http://marc.info/?l=bugtraq&m=112690609622266&w=2http://secunia.com/advisories/16747/http://secunia.com/advisories/17073http://secunia.com/advisories/17918http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.13.1http://www.mandriva.com/security/advisories?name=MDKSA-2005:220http://www.mandriva.com/security/advisories?name=MDKSA-2005:235http://www.redhat.com/support/errata/RHSA-2005-514.htmlhttp://www.securityfocus.com/archive/1/419522/100/0/threadedhttp://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/bid/14787http://www.ubuntu.com/usn/usn-178-1https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=166830https://exchange.xforce.ibmcloud.com/vulnerabilities/22218https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11031http://marc.info/?l=bugtraq&m=112690609622266&w=2http://secunia.com/advisories/16747/http://secunia.com/advisories/17073http://secunia.com/advisories/17918http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.13.1http://www.mandriva.com/security/advisories?name=MDKSA-2005:220http://www.mandriva.com/security/advisories?name=MDKSA-2005:235http://www.redhat.com/support/errata/RHSA-2005-514.htmlhttp://www.securityfocus.com/archive/1/419522/100/0/threadedhttp://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/bid/14787http://www.ubuntu.com/usn/usn-178-1https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=166830https://exchange.xforce.ibmcloud.com/vulnerabilities/22218https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11031
2005-09-14
Published