CVE-2005-1768
Last modified
CVE-2005-1768 is a vulnerability of currently unknown severity. Race condition in the ia32 compatibility code for the execve system call in Linux kernel 2.4 before 2.4.31 and 2.6 before 2.6.6 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code via a concurrent thread that increments a pointer count after the nargs function has counted the pointers, but before the count is copied from user space to kernel space, which leads to a buffer overflow.. EPSS estimates a 0.48% chance of exploitation in the next 30 days.
Description
Race condition in the ia32 compatibility code for the execve system call in Linux kernel 2.4 before 2.4.31 and 2.6 before 2.6.6 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code via a concurrent thread that increments a pointer count after the nargs function has counted the pointers, but before the count is copied from user space to kernel space, which leads to a buffer overflow.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Linux | Linux Kernel | 2.4.0 | — |
| Linux | Linux Kernel | 2.4.1 | — |
| Linux | Linux Kernel | 2.4.2 | — |
| Linux | Linux Kernel | 2.4.3 | — |
| Linux | Linux Kernel | 2.4.10 | — |
| Linux | Linux Kernel | 2.4.11 | — |
| Linux | Linux Kernel | 2.4.12 | — |
| Linux | Linux Kernel | 2.4.13 | — |
| Linux | Linux Kernel | 2.4.14 | — |
| Linux | Linux Kernel | 2.4.15 | — |
| Linux | Linux Kernel | 2.4.16 | — |
| Linux | Linux Kernel | 2.4.17 | — |
| Linux | Linux Kernel | 2.4.18 | — |
| Linux | Linux Kernel | 2.4.19 | — |
| Linux | Linux Kernel | 2.4.20 | — |
| Linux | Linux Kernel | 2.4.21 | — |
| Linux | Linux Kernel | 2.4.22 | — |
| Linux | Linux Kernel | 2.4.23 | — |
| Linux | Linux Kernel | 2.4.23_ow2 | — |
| Linux | Linux Kernel | 2.4.24 | — |
| Linux | Linux Kernel | 2.4.24_ow1 | — |
| Linux | Linux Kernel | 2.4.25 | — |
| Linux | Linux Kernel | 2.4.26 | — |
| Linux | Linux Kernel | 2.4.27 | — |
| Linux | Linux Kernel | 2.4.28 | — |
| Linux | Linux Kernel | 2.4.29 | — |
| Linux | Linux Kernel | 2.4.30 | — |
| Linux | Linux Kernel | 2.4.31 | Pre1 |
| Linux | Linux Kernel | 2.6.0 | — |
| Linux | Linux Kernel | 2.6.1 | — |
| Linux | Linux Kernel | 2.6.2 | — |
| Linux | Linux Kernel | 2.6.3 | — |
| Linux | Linux Kernel | 2.6.4 | — |
| Linux | Linux Kernel | 2.6.5 | — |
| Linux | Linux Kernel | 2.6.6 | — |
| Linux | Linux Kernel | 2.6.10 | — |
| Linux | Linux Kernel | 2.6_test9_cvs | — |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-1768?
How severe is CVE-2005-1768?
How do I fix CVE-2005-1768?
Are you affected by CVE-2005-1768?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
