MEDIUM
The fill_write_buffer function in sysfs/file.c in Linux kernel 2.6.12 up to versions before 2.6.17-rc1 does not zero terminate a buffer when a length of PAGE_SIZE or more is requested, which might allow local users to cause a denial of service (crash) by causing an out-of-bounds read
Published Apr 5, 2006
4.9
MEDIUMCVSS 2.0
EPSS 0.60%
Description
The fill_write_buffer function in sysfs/file.c in Linux kernel 2.6.12 up to versions before 2.6.17-rc1 does not zero terminate a buffer when a length of PAGE_SIZE or more is requested, which might allow local users to cause a denial of service (crash) by causing an out-of-bounds read.
Affected products
No data.
OR
- 2.6.12
- 2.6.12
- 2.6.12
- 2.6.12
- 2.6.12.1
- 2.6.12.2
- 2.6.12.3
- 2.6.12.4
- 2.6.12.5
- 2.6.12.6
- 2.6.13
- 2.6.13
- 2.6.13
- 2.6.13
- 2.6.13
- 2.6.13.1
- 2.6.13.2
- 2.6.13.3
- 2.6.13.4
- 2.6.14
- 2.6.14
- 2.6.14
- 2.6.14
- 2.6.14
- 2.6.14.1
- 2.6.14.2
- 2.6.14.3
- 2.6.14.4
- 2.6.14.5
- 2.6.15
- 2.6.15
- 2.6.15
- 2.6.15
- 2.6.15
- 2.6.15
- 2.6.15
- 2.6.15.1
- 2.6.15.2
- 2.6.15.3
- 2.6.15.4
- 2.6.15.5
- 2.6.16
- 2.6.17
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (18)
- http://lwn.net/Alerts/180820/ vendor-advisoryx_refsource_FEDORA
- http://secunia.com/advisories/19495 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/19735 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/19955 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/20398 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/20716 third-party-advisoryx_refsource_SECUNIA
- http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6e0dd741a89be35defa05bd79f4211c5a2762825 x_refsource_CONFIRM
- http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=6e0dd741a89be35defa05bd79f4211c5a2762825%3Bhp=597a7679dd83691be2f3a53e1f3f915b4a7f6eba x_refsource_CONFIRM
- http://www.novell.com/linux/security/advisories/2006-05-31.html vendor-advisoryx_refsource_SUSE
- http://www.osvdb.org/24443 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/bid/17402 vdb-entryx_refsource_BID
- http://www.trustix.org/errata/2006/0020 vendor-advisoryx_refsource_TRUSTIX
- http://www.ubuntu.com/usn/usn-302-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2006/1273 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2006/1475 vdb-entryx_refsource_VUPEN
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-1059 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25693 vdb-entryx_refsource_XF
- https://usn.ubuntu.com/281-1/ vendor-advisoryx_refsource_UBUNTU
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Apr 5, 2006
Updated Aug 7, 2024
Reserved Mar 7, 2006
Link CVE-2006-1055
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2006-1059 Assigner redhat
Published Apr 5, 2006
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2006-1059