CVE-2004-0077

Linux <2.2.25, <2.4.24, <2.6.2 - Privilege Escalation

Title source: llm

Description

The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Paul Starzetz · clocallinux
https://www.exploit-db.com/exploits/160
exploitdb WORKING POC VERIFIED
by Christophe Devine · clocallinux
https://www.exploit-db.com/exploits/154

References (36)

... and 16 more

Scores

EPSS 0.0011
EPSS Percentile 29.4%

Classification

Status draft

Affected Products (50)

redhat/bigmem_kernel
redhat/kernel
redhat/kernel
redhat/kernel
redhat/kernel_doc
redhat/kernel_source
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
... and 35 more

Timeline

Published Mar 03, 2004
Tracked Since Feb 18, 2026