CVE-2005-3181
published 2005-10-12CVE-2005-3181: The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache…
PriorityP49low2.1CVSS 2.0
AVLACLAuNCNINAP
EPSS
0.50%
40.0th percentile
The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache memory, which prevents the memory from being tracked by AUDITSYSCALL code and leads to a memory leak that allows attackers to cause a denial of service (memory consumption).
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| linux | linux_kernel | 2.6.0 – 2.6.13.3 | — |
| mandriva | linux | — | — |
| mandriva | linux | — | — |
| mandriva | linux | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-433r-f7hr-hvfv: The audit system in Linux kernel 2
ghsa_unreviewed·2022-05-01
CVE-2005-3181 [LOW] CWE-401 GHSA-433r-f7hr-hvfv: The audit system in Linux kernel 2
The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache memory, which prevents the memory from being tracked by AUDITSYSCALL code and leads to a memory leak that allows attackers to cause a denial of service (memory consumption).
Red Hat
security flaw
vendor_redhat·2005-10-07·CVSS 2.1
CVE-2005-3181 [LOW] security flaw
security flaw
The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache memory, which prevents the memory from being tracked by AUDITSYSCALL code and leads to a memory leak that allows attackers to cause a denial of service (memory consumption).
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2005-3181 security flaw
bugzilla·2018-08-16·CVSS 2.1
CVE-2005-3181 [LOW] CVE-2005-3181 security flaw
CVE-2005-3181 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache memory, which prevents the memory from being tracked by AUDITSYSCALL code and leads to a memory leak that allows attackers to cause a denial of service (memory consumption).
Bugzilla
Multiple Kernel vulnerabilities
bugzilla·2005-05-11
[MEDIUM] Multiple Kernel vulnerabilities
Multiple Kernel vulnerabilities
From Bugzilla Helper:
User-Agent: Mozilla/5.0 (Mozilla rulez!)
Description of problem:
Paul Starzetz of iSEC has found yet another bug in binfmt_elf.c. It can be abused to crash the kernel, perhaps even to break into the kernel land. See the advisory for details.
Version-Release number of selected component (if applicable):
How reproducible:
Didn't try
Steps to Reproduce:
Additional info:
I've got a quick and dirty patch. I'll submit it ASAP.
Discussion:
Grr...Bugzilla assigned the bug to [email protected] rather than to
[email protected]
---
Created attachment 114264
The patch for CAN-2005-1263
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
This patch can be applied to FL kernel 2.4.20-43:
402e548b02382c015d6f5e5704370a1ba546598b
li
http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=829841146878e082613a49581ae252c071057c23http://linux.bkbits.net:8080/linux-2.6/cset%404346883bQBeBd26syWTKX2CVC5bDcAhttp://secunia.com/advisories/17114http://secunia.com/advisories/17280http://secunia.com/advisories/17364http://secunia.com/advisories/17826http://secunia.com/advisories/17917http://secunia.com/advisories/19374http://www.debian.org/security/2006/dsa-1017http://www.mandriva.com/security/advisories?name=MDKSA-2005:218http://www.mandriva.com/security/advisories?name=MDKSA-2005:219http://www.mandriva.com/security/advisories?name=MDKSA-2005:220http://www.mandriva.com/security/advisories?name=MDKSA-2005:235http://www.redhat.com/support/errata/RHSA-2005-808.htmlhttp://www.securityfocus.com/advisories/9549http://www.securityfocus.com/advisories/9806http://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/bid/15076http://www.ubuntu.com/usn/usn-199-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9467http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=829841146878e082613a49581ae252c071057c23http://linux.bkbits.net:8080/linux-2.6/cset%404346883bQBeBd26syWTKX2CVC5bDcAhttp://secunia.com/advisories/17114http://secunia.com/advisories/17280http://secunia.com/advisories/17364http://secunia.com/advisories/17826http://secunia.com/advisories/17917http://secunia.com/advisories/19374http://www.debian.org/security/2006/dsa-1017http://www.mandriva.com/security/advisories?name=MDKSA-2005:218http://www.mandriva.com/security/advisories?name=MDKSA-2005:219http://www.mandriva.com/security/advisories?name=MDKSA-2005:220http://www.mandriva.com/security/advisories?name=MDKSA-2005:235http://www.redhat.com/support/errata/RHSA-2005-808.htmlhttp://www.securityfocus.com/advisories/9549http://www.securityfocus.com/advisories/9806http://www.securityfocus.com/archive/1/427980/100/0/threadedhttp://www.securityfocus.com/bid/15076http://www.ubuntu.com/usn/usn-199-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9467
2005-10-12
Published