CVE-2006-5174
Vulnerability Summary
Timeline
Description
The copy_from_user function in the uaccess code in Linux kernel 2.6 before 2.6.19-rc1, when running on s390, does not properly clear a kernel buffer, which allows local user space programs to read portions of kernel memory by "appending to a file from a bad address," which triggers a fault that prevents the unused memory from being cleared in the kernel buffer.
CVSS Metrics
- v2.0•LOW•Score: 2.1AV:L/AC:L/Au:N/C:P/I:N/A:N
EPSS Trends
Current EPSS score: 0.06%• Percentile: 20%
Affected Systems
- linux•linux_kernel
2.6.0 | 2.6.0:test1 | 2.6.0:test10 | 2.6.0:test11 | 2.6.0:test2 | 2.6.0:test3 | 2.6.0:test4 | 2.6.0:test5 | 2.6.0:test6 | 2.6.0:test7 | 2.6.0:test8 | 2.6.0:test9 | 2.6.1 | 2.6.1:rc1 | 2.6.1:rc2 | 2.6.1:rc3 | 2.6.2 | 2.6.2:rc1 | 2.6.2:rc2 | 2.6.2:rc3 | 2.6.3 | 2.6.3:rc1 | 2.6.3:rc2 | 2.6.3:rc3 | 2.6.3:rc4 | 2.6.4 | 2.6.4:rc1 | 2.6.4:rc2 | 2.6.4:rc3 | 2.6.5 | 2.6.5:rc1 | 2.6.5:rc2 | 2.6.5:rc3 | 2.6.6 | 2.6.6:rc1 | 2.6.6:rc2 | 2.6.6:rc3 | 2.6.7 | 2.6.7:rc1 | 2.6.7:rc2 | 2.6.7:rc3 | 2.6.8 | 2.6.8:rc1 | 2.6.8:rc2 | 2.6.8:rc3 | 2.6.8:rc4 | 2.6.8.1 | 2.6.8.1.5 | 2.6.9 | 2.6.9:2.6.20 | 2.6.9:rc1 | 2.6.9:rc2 | 2.6.9:rc3 | 2.6.9:rc4 | 2.6.10 | 2.6.10:rc1 | 2.6.10:rc2 | 2.6.10:rc3 | 2.6.11 | 2.6.11:rc1 | 2.6.11:rc2 | 2.6.11:rc3 | 2.6.11:rc4 | 2.6.11:rc5 | 2.6.11.1 | 2.6.11.2 | 2.6.11.3 | 2.6.11.4 | 2.6.11.5 | 2.6.11.6 | 2.6.11.7 | 2.6.11.8 | 2.6.11.9 | 2.6.11.10 | 2.6.11.11 | 2.6.11.12 | 2.6.11_rc1_bk6 | 2.6.12 | 2.6.12:rc1 | 2.6.12:rc2 | 2.6.12:rc3 | 2.6.12:rc4 | 2.6.12:rc5 | 2.6.12:rc6 | 2.6.12.1 | 2.6.12.2 | 2.6.12.3 | 2.6.12.4 | 2.6.12.5 | 2.6.12.6 | 2.6.13 | 2.6.13:rc1 | 2.6.13:rc2 | 2.6.13:rc3 | 2.6.13:rc4 | 2.6.13:rc5 | 2.6.13:rc6 | 2.6.13:rc7 | 2.6.13.1 | 2.6.13.2 | 2.6.13.3 | 2.6.13.4 | 2.6.14 | 2.6.14:rc1 | 2.6.14:rc2 | 2.6.14:rc3 | 2.6.14:rc4 | 2.6.14:rc5 | 2.6.14.1 | 2.6.14.2 | 2.6.14.3 | 2.6.14.4 | 2.6.14.5 | 2.6.14.6 | 2.6.14.7 | 2.6.15 | 2.6.15:rc1 | 2.6.15:rc3 | 2.6.15:rc4 | 2.6.15:rc5 | 2.6.15:rc6 | 2.6.15:rc7 | 2.6.15.1 | 2.6.15.2 | 2.6.15.3 | 2.6.15.4 | 2.6.15.5 | 2.6.15.6 | 2.6.15.7 | 2.6.16 | 2.6.16:rc1 | 2.6.16:rc2 | 2.6.16:rc3 | 2.6.16:rc4 | 2.6.16:rc5 | 2.6.16:rc6 | 2.6.16.1 | 2.6.16.2 | 2.6.16.3 | 2.6.16.4 | 2.6.16.5 | 2.6.16.6 | 2.6.16.7 | 2.6.16.8 | 2.6.16.9 | 2.6.16.10 | 2.6.16.11 | 2.6.16.12 | 2.6.16.13 | 2.6.16.14 | 2.6.16.15 | 2.6.16.16 | 2.6.16.17 | 2.6.16.18 | 2.6.16.19 | 2.6.16.20 | 2.6.16.21 | 2.6.16.22 | 2.6.16.23 | 2.6.16.24 | 2.6.16.27 | 2.6.16_rc7 | 2.6.17 | 2.6.17:rc1 | 2.6.17:rc2 | 2.6.17:rc3 | 2.6.17:rc4 | 2.6.17:rc5 | 2.6.17:rc6 | 2.6.17.1 | 2.6.17.2 | 2.6.17.3 | 2.6.17.4 | 2.6.17.5 | 2.6.17.6 | 2.6.17.7 | 2.6.17.8 | 2.6.17.9 | 2.6.17.10 | 2.6.17.11 | 2.6.18:rc1 | 2.6.18:rc2 | 2.6.18:rc5 | 2.6.19 | 2.6_test9_cvs
References (22)
- http://lkml.org/lkml/2006/11/5/46
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9885
- http://www.novell.com/linux/security/advisories/2006_79_kernel.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29378
- http://www.securityfocus.com/bid/20379
- http://rhn.redhat.com/errata/RHSA-2007-0014.html
- http://www.vupen.com/english/advisories/2006/3938
- http://support.avaya.com/elmodocs2/security/ASA-2007-063.htm
- http://www.us.debian.org/security/2006/dsa-1237
- http://secunia.com/advisories/24206
- http://securitytracker.com/id?1017090
- http://secunia.com/advisories/23474
- http://secunia.com/advisories/23064
- http://www.us.debian.org/security/2006/dsa-1233
- http://secunia.com/advisories/23370
- http://secunia.com/advisories/23997
- http://support.avaya.com/elmodocs2/security/ASA-2006-254.htm
- http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=52149ba6b0ddf3e9d965257cc0513193650b3ea8
- http://secunia.com/advisories/22497
- http://www.redhat.com/support/errata/RHSA-2006-0710.html
- http://secunia.com/advisories/23395
- http://secunia.com/advisories/22289