CVE-2004-2302

Linux kernel <2.6.10 - Info Disclosure, DoS

Title source: llm
STIX 2.1

Description

Race condition in the sysfs_read_file and sysfs_write_file functions in Linux kernel before 2.6.10 allows local users to read kernel memory and cause a denial of service (crash) via large offsets in sysfs files.

References (9)

Core 9
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18056
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13091
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2005/dsa-922
Vendor Advisory vendor-advisory x_refsource_mandrake
http://www.mandriva.com/security/advisories?name=MDKSA-2005:218
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17826
Patch, Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2005_44_kernel.html
Vendor Advisory vendor-advisory x_refsource_mandrake
http://www.mandriva.com/security/advisories?name=MDKSA-2005:219

Scores

EPSS 0.0034
EPSS Percentile 27.0%

Details

Status published
Products (1)
linux/linux_kernel 2.6.10
Published Dec 31, 2004
Tracked Since Feb 18, 2026