CVE-2005-2617
Linux Kernel 2.6.12 and later - Memory Leak via 32-bit Application with Crafted ELF Headers
Title source: llmDescription
The syscall32_setup_pages function in syscall32.c for Linux kernel 2.6.12 and later, on the 64-bit x86 platform, does not check the return value of the insert_vm_struct function, which allows local users to trigger a memory leak via a 32-bit application with crafted ELF headers.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=9fb1759a3102c26cd8f64254a7c3e532782c2bb8
Vendor Advisory x_refsource_confirm
http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=9fb1759a3102c26cd8f64254a7c3e532782c2bb8
Scores
EPSS
0.0034
EPSS Percentile
26.2%
Details
Status
published
Products (1)
linux/linux_kernel
2.6.12 rc1 (2 CPE variants)
Published
Aug 17, 2005
Tracked Since
Feb 18, 2026