CVE-2004-1057

Linux Kernel < 2.4.19 - Denial of Service via VM_IO Flag Mismanagement

Title source: llm
STIX 2.1

Description

Multiple drivers in Linux kernel 2.4.19 and earlier do not properly mark memory with the VM_IO flag, which causes incorrect reference counts and may lead to a denial of service (kernel panic) when accessing freed kernel pages.

References (9)

Core 9
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12338
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/19275
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2006-0140.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11474
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2005-017.html
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2005-016.html
Patch, Vendor Advisory x_refsource_confirm
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=137821
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18562

Scores

EPSS 0.0042
EPSS Percentile 34.9%

Details

Status published
Products (50)
linux/linux_kernel 2.0
linux/linux_kernel 2.0.1
linux/linux_kernel 2.0.2
linux/linux_kernel 2.0.3
linux/linux_kernel 2.0.4
linux/linux_kernel 2.0.5
linux/linux_kernel 2.0.6
linux/linux_kernel 2.0.7
linux/linux_kernel 2.0.8
linux/linux_kernel 2.0.9
... and 40 more
Published Jan 21, 2005
Tracked Since Feb 18, 2026