Description
The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.
Exploits (3)
exploitdb
WORKING POC
VERIFIED
by Paul Starzetz · clocallinux
https://www.exploit-db.com/exploits/145
exploitdb
WORKING POC
VERIFIED
by Christophe Devine · clocallinux
https://www.exploit-db.com/exploits/142
exploitdb
WORKING POC
VERIFIED
by Christophe Devine · clocallinux
https://www.exploit-db.com/exploits/141
References (46)
... and 26 more
Scores
EPSS
0.0099
EPSS Percentile
77.0%
Details
Status
published
Products (22)
linux/linux_kernel
2.4.0 (13 CPE variants)
linux/linux_kernel
2.4.1
linux/linux_kernel
2.4.2
linux/linux_kernel
2.4.3
linux/linux_kernel
2.4.4
linux/linux_kernel
2.4.5
linux/linux_kernel
2.4.6
linux/linux_kernel
2.4.7
linux/linux_kernel
2.4.8
linux/linux_kernel
2.4.9
... and 12 more
Published
Jan 20, 2004
Tracked Since
Feb 18, 2026