CVE-2006-4814
Vulnerability Summary
Timeline
Description
The mincore function in the Linux kernel before 2.4.33.6 does not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock.
CVSS Metrics
- v2.0•MEDIUM•Score: 4.6AV:L/AC:L/Au:S/C:N/I:N/A:C
EPSS Trends
Current EPSS score: 0.09%• Percentile: 26%
Techniques & Countermeasures
- CWE-399•Resource Management Errors
Weaknesses in this category are related to improper management of system resources.
Affected Systems
- linux•linux_kernel
≤ 2.4.33.5 | 2.4.0 | 2.4.0:test1 | 2.4.0:test10 | 2.4.0:test11 | 2.4.0:test12 | 2.4.0:test2 | 2.4.0:test3 | 2.4.0:test4 | 2.4.0:test5 | 2.4.0:test6 | 2.4.0:test7 | 2.4.0:test8 | 2.4.0:test9 | 2.4.1 | 2.4.2 | 2.4.3 | 2.4.4 | 2.4.5 | 2.4.6 | 2.4.7 | 2.4.8 | 2.4.9 | 2.4.10 | 2.4.11 | 2.4.12 | 2.4.13 | 2.4.14 | 2.4.15 | 2.4.16 | 2.4.17 | 2.4.18 | 2.4.18:pre1 | 2.4.18:pre2 | 2.4.18:pre3 | 2.4.18:pre4 | 2.4.18:pre5 | 2.4.18:pre6 | 2.4.18:pre7 | 2.4.18:pre8 | 2.4.19 | 2.4.19:pre1 | 2.4.19:pre2 | 2.4.19:pre3 | 2.4.19:pre4 | 2.4.19:pre5 | 2.4.19:pre6 | 2.4.20 | 2.4.21 | 2.4.21:pre1 | 2.4.21:pre4 | 2.4.21:pre7 | 2.4.22 | 2.4.23 | 2.4.23:pre9 | 2.4.23_ow2 | 2.4.24 | 2.4.24_ow1 | 2.4.25 | 2.4.26 | 2.4.27 | 2.4.27:pre1 | 2.4.27:pre2 | 2.4.27:pre3 | 2.4.27:pre4 | 2.4.27:pre5 | 2.4.28 | 2.4.29 | 2.4.29:rc1 | 2.4.29:rc2 | 2.4.30 | 2.4.30:rc2 | 2.4.30:rc3 | 2.4.31 | 2.4.31:pre1 | 2.4.32 | 2.4.32:pre1 | 2.4.32:pre2 | 2.4.33 | 2.4.33:pre1 | 2.4.33.2 | 2.4.33.3 | 2.4.33.4
References (31)
- http://www.trustix.org/errata/2007/0002/
- http://secunia.com/advisories/24098
- http://secunia.com/advisories/23609
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9648
- http://rhn.redhat.com/errata/RHSA-2007-0014.html
- http://secunia.com/advisories/23436
- http://www.securityfocus.com/bid/21663
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:040
- http://support.avaya.com/elmodocs2/security/ASA-2007-063.htm
- http://www.ubuntu.com/usn/usn-416-1
- http://secunia.com/advisories/24100
- http://secunia.com/advisories/30110
- http://www.vupen.com/english/advisories/2008/2222/references
- http://www.vupen.com/english/advisories/2006/5082
- http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.33.6
- http://secunia.com/advisories/33280
- http://secunia.com/advisories/24206
- http://secunia.com/advisories/23997
- http://www.securityfocus.com/archive/1/471457
- http://secunia.com/advisories/24482
- http://www.novell.com/linux/security/advisories/2007_18_kernel.html
- http://www.debian.org/security/2008/dsa-1503
- http://secunia.com/advisories/29058
- http://www.debian.org/security/2007/dsa-1304
- http://www.redhat.com/support/errata/RHSA-2008-0211.html
- http://secunia.com/advisories/25714
- http://www.redhat.com/support/errata/RHSA-2008-0787.html
- http://lists.vmware.com/pipermail/security-announce/2008/000023.html
- http://secunia.com/advisories/25691
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:060
- http://secunia.com/advisories/31246