CVE Vulnerabilities

CVE-2005-1264

Published: May 17, 2005 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589.

Affected Software

Name Vendor Start Version End Version
Linux_kernel Linux 2.6.5 2.6.5
Linux_kernel Linux 2.6.1 2.6.1
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.3 2.6.3
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.4 2.6.4
Linux_kernel Linux 2.6_test9_cvs 2.6_test9_cvs
Linux_kernel Linux 2.6.7 2.6.7
Linux_kernel Linux 2.6.2 2.6.2
Linux_kernel Linux 2.6.8 2.6.8
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.1 2.6.1
Linux_kernel Linux 2.6.8 2.6.8
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.7 2.6.7
Linux_kernel Linux 2.6.1 2.6.1
Linux_kernel Linux 2.6.6 2.6.6
Linux_kernel Linux 2.6.9 2.6.9
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.8 2.6.8
Linux_kernel Linux 2.6.8 2.6.8
Linux_kernel Linux 2.6.0 2.6.0
Linux_kernel Linux 2.6.6 2.6.6
Linux_kernel Linux 2.6.0 2.6.0

References