CVE-2005-0532
Last modified
CVE-2005-0532 is a vulnerability of currently unknown severity. The reiserfs_copy_from_user_to_file_region function in reiserfs/file.c for Linux kernel 2.6.10 and 2.6.11 before 2.6.11-rc4, when running on 64-bit architectures, may allow local users to trigger a buffer overflow as a result of casting discrepancies between size_t and int data types.. EPSS estimates a 0.52% chance of exploitation in the next 30 days.
Description
The reiserfs_copy_from_user_to_file_region function in reiserfs/file.c for Linux kernel 2.6.10 and 2.6.11 before 2.6.11-rc4, when running on 64-bit architectures, may allow local users to trigger a buffer overflow as a result of casting discrepancies between size_t and int data types.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | 2.6.10 |
| Linux | Linux Kernel | 2.6.11 |
References
- http://www.guninski.com/where_do_you_want_billg_to_go_today_3.htmlExploit, Patch, Vendor Advisory
- http://www.novell.com/linux/security/advisories/2005_18_kernel.htmlPatch, Vendor Advisory
- http://www.guninski.com/where_do_you_want_billg_to_go_today_3.htmlExploit, Patch, Vendor Advisory
- http://www.novell.com/linux/security/advisories/2005_18_kernel.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0532?
How severe is CVE-2005-0532?
How do I fix CVE-2005-0532?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-0526Multiple cross-site scripting (XSS) vulnerabilities in PBLan…
- CVE-2005-0527Firefox 1.0 allows remote attackers to execute arbitrary cod…
- CVE-2005-0528Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2005-0529Linux kernel 2.6.10 and 2.6.11rc1-bk6 uses different size ty…
- CVE-2005-0530Signedness error in the copy_from_read_buf function in n_tty…
- CVE-2005-0531The atm_get_addr function in addr.c for Linux kernel 2.6.10 …
- CVE-2005-0533Heap-based buffer overflow in Trend Micro AntiVirus Library …
- CVE-2005-0534Multiple cross-site scripting (XSS) vulnerabilities in Media…
- CVE-2005-0535Cross-site request forgery (CSRF) vulnerability in MediaWiki…
- CVE-2005-0536Directory traversal vulnerability in MediaWiki 1.3.x before …
- CVE-2005-0537Multiple SQL injection vulnerabilities in page.php for iGene…
- CVE-2005-0538Directory traversal vulnerability in (1) GinpPictureServlet.…
Are you affected by CVE-2005-0532?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
