imPC@ndo IT

Tracker / CVE-2004-1235

CVE-2004-1235

Medium 6.2

Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.

Affected products and versions

avaya converged_communications_server
avaya intuity_audix
avaya mn100
avaya modular_messaging_message_storage_server
avaya network_routing
avaya s8300
avaya s8500
avaya s8700
avaya s8710
conectiva linux
linux linux_kernel
mandrakesoft mandrake_linux
mandrakesoft mandrake_linux_corporate_server
mandrakesoft mandrake_multi_network_firewall
redhat enterprise_linux
redhat enterprise_linux_desktop
redhat fedora_core
redhat linux
suse suse_linux
ubuntu ubuntu_linux

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References