CVE-2004-1235

Scores

EPSS

0.001very_low0.1%
0%20%40%60%80%100%

Percentile: 0.1%

CVSS

6.2medium2.0
0246810

CVSS Score: 6.2/10

All CVSS Scores

CVSS 2.0
6.2

Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Description

Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdredhat

Exploits

Exploit ID: 744

Source: exploitdb

URL: https://www.exploit-db.com/exploits/744

Exploit ID: 778

Source: exploitdb

URL: https://www.exploit-db.com/exploits/778

Exploit ID: 895

Source: exploitdb

URL: https://www.exploit-db.com/exploits/895

Vulnerable Software (24)

Type: Configuration

Product: kernel

Operating System: rhel 4

Trait:
{  "fixed": "2.6.9-5.0.3.EL"}

Source: redhat

Type: Configuration

Product: kernel

Operating System: rhel 3

Trait:
{  "fixed": "2.4.21-27.0.2.EL"}

Source: redhat

Type: Configuration

Product: kernel-source-2.4.27

Operating System: debian

Trait:
{  "fixed": "2.4.27-8"}

Source: debian

Type: Configuration

Product: linux-2.6

Operating System: debian

Trait:
{  "unaffected": true}

Source: debian

Type: Configuration

Vendor: avaya

Product: converged_communications_server

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:avaya:mn100:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:avaya:network_routing:*:*:*:*:*:*:*:*",      "vu...

Source: nvd

Type: Configuration

Vendor: avaya

Product: intuity_audix

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:avaya:intuity_audix:*:*:lx:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:mandrakesoft:mandrake_multi_network_fire...

Source: nvd

Type: Configuration

Vendor: avaya

Product: mn100

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:avaya:mn100:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:avaya:network_routing:*:*:*:*:*:*:*:*",      "vu...

Source: nvd

Type: Configuration

Vendor: avaya

Product: modular_messaging_message_storage_server

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:avaya:mn100:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:avaya:network_routing:*:*:*:*:*:*:*:*",      "vu...

Source: nvd

Type: Configuration

Vendor: avaya

Product: network_routing

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:avaya:mn100:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:avaya:network_routing:*:*:*:*:*:*:*:*",      "vu...

Source: nvd

Type: Configuration

Vendor: avaya

Product: s8300

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:avaya:intuity_audix:*:*:lx:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:mandrakesoft:mandrake_multi_network_fire...

Source: nvd