CVE-2004-2607

Scores

EPSS

0.001very_low0.1%
0%20%40%60%80%100%

Percentile: 0.1%

CVSS

2.1low2.0
0246810

CVSS Score: 2.1/10

All CVSS Scores

CVSS 2.0
2.1

Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Description

A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users to read portions of kernel memory via a large len argument, which is received as an int but cast to a short, which prevents a read loop from filling a buffer.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvd

Related Vulnerabilities

BDU:2015-03166BDU:2015-03167BDU:2015-03168BDU:2015-03169BDU:2015-03170BDU:2015-03171BDU:2015-03172BDU:2015-03173BDU:2015-03174BDU:2015-03175BDU:2015-03176BDU:2015-03177BDU:2015-03178BDU:2015-03179BDU:2015-03180BDU:2015-03181BDU:2015-03182BDU:2015-03183BDU:2015-03184BDU:2015-03185BDU:2015-03186BDU:2015-03187BDU:2015-03188BDU:2015-03189BDU:2015-03190BDU:2015-03191BDU:2015-03192BDU:2015-03193BDU:2015-03194BDU:2015-03195BDU:2015-03196BDU:2015-03197BDU:2015-03198BDU:2015-03199BDU:2015-03200BDU:2015-03201BDU:2015-03202BDU:2015-03203BDU:2015-03204BDU:2015-03205BDU:2015-03206BDU:2015-03207BDU:2015-03208BDU:2015-03209BDU:2015-03210BDU:2015-03211BDU:2015-03212BDU:2015-03213BDU:2015-03214BDU:2015-03215BDU:2015-03216BDU:2015-03217BDU:2015-03218BDU:2015-03219BDU:2015-03220BDU:2015-03221BDU:2015-03222BDU:2015-03223BDU:2015-03224BDU:2015-03225BDU:2015-03226BDU:2015-03227BDU:2015-03228BDU:2015-03229BDU:2015-03230BDU:2015-03231BDU:2015-03232BDU:2015-03233BDU:2015-03234BDU:2015-03235BDU:2015-03236BDU:2015-03237BDU:2015-03238BDU:2015-03239BDU:2015-03240BDU:2015-03241BDU:2015-03242BDU:2015-03243BDU:2015-03244BDU:2015-03245BDU:2015-03246BDU:2015-03247BDU:2015-03248BDU:2015-03249BDU:2015-03250BDU:2015-03251BDU:2015-03252BDU:2015-03253BDU:2015-03254BDU:2015-03255BDU:2015-03256BDU:2015-03257BDU:2015-03258BDU:2015-03259BDU:2015-03260BDU:2015-03261BDU:2015-03262BDU:2015-03263BDU:2015-03264BDU:2015-03265BDU:2015-03266BDU:2015-03267BDU:2015-03268BDU:2015-03269BDU:2015-03270BDU:2015-03271BDU:2015-03272BDU:2015-03273BDU:2015-03274

Vulnerable Software (2)

Type: Configuration

Product: linux-2.6

Operating System: debian

Trait:
{  "unaffected": true}

Source: debian

Type: Configuration

Vendor: linux

Product: linux_kernel

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:linux:linux_kernel:2.4.0:test1:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:linux:linux_kernel:2.4.0:test10:*:...

Source: nvd