CVE-2004-2660

Advisory lineage Upstream: 0 Downstream: 2
Modified
Published: 26 May 2006, 22:00
Last modified:08 Aug 2024, 01:36

Vulnerability Summary

Overall Risk (default)
low
20/100
CVSS Score
4.9 MEDIUM
v2.0 (nvd)
EPSS Score
0.05% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

26 May 2006, 22:00
Published
Vulnerability first disclosed
08 Aug 2024, 01:36
Last Modified
Vulnerability information updated

Description

Memory leak in direct-io.c in Linux kernel 2.6.x before 2.6.10 allows local users to cause a denial of service (memory consumption) via certain O_DIRECT (direct IO) write requests.

CVSS Metrics

  • v2.0MEDIUMScore: 4.9AV:L/AC:L/Au:N/C:N/I:N/A:C

EPSS Trends

Current EPSS score: 0.05% Percentile: 15%

Affected Systems

  • linuxlinux_kernel

    2.6.0 | 2.6.0:test1 | 2.6.0:test10 | 2.6.0:test11 | 2.6.0:test2 | 2.6.0:test3 | 2.6.0:test4 | 2.6.0:test5 | 2.6.0:test6 | 2.6.0:test7 | 2.6.0:test8 | 2.6.0:test9 | 2.6.1 | 2.6.1:rc1 | 2.6.1:rc2 | 2.6.1:rc3 | 2.6.2 | 2.6.2:rc1 | 2.6.2:rc2 | 2.6.2:rc3 | 2.6.3 | 2.6.3:rc1 | 2.6.3:rc2 | 2.6.3:rc3 | 2.6.3:rc4 | 2.6.4 | 2.6.4:rc1 | 2.6.4:rc2 | 2.6.4:rc3 | 2.6.5 | 2.6.5:rc1 | 2.6.5:rc2 | 2.6.5:rc3 | 2.6.6 | 2.6.6:rc1 | 2.6.6:rc2 | 2.6.6:rc3 | 2.6.7 | 2.6.7:rc1 | 2.6.7:rc2 | 2.6.7:rc3 | 2.6.8 | 2.6.8:rc1 | 2.6.8:rc2 | 2.6.8:rc3 | 2.6.8:rc4 | 2.6.8.1 | 2.6.8.1.5 | 2.6.9 | 2.6.9:2.6.20 | 2.6.9:rc1 | 2.6.9:rc2 | 2.6.9:rc3 | 2.6.9:rc4 | 2.6_test9_cvs

References (10)