CVE-2005-4798

Linux Kernel 2.4-2.4.31 - Buffer Overflow

Title source: llm
STIX 2.1

Description

Buffer overflow in NFS readlink handling in the Linux Kernel 2.4 up to 2.4.31 allows remote NFS servers to cause a denial of service (crash) via a long symlink, which is not properly handled in (1) nfs2xdr.c or (2) nfs3xdr.c and causes a crash in the NFS client.

References (11)

Core 11
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/20186
Various Sources mailing-list x_refsource_mlist
http://www.ussg.iu.edu/hypermail/linux/kernel/0509.1/1333.html
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2006/dsa-1183
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11536
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22082
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2006-05-31.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/20398
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22093
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2006/dsa-1184

Scores

EPSS 0.0295
EPSS Percentile 85.9%

Details

Status published
Products (17)
linux/linux_kernel 2.4.0 (13 CPE variants)
linux/linux_kernel 2.4.1
linux/linux_kernel 2.4.2
linux/linux_kernel 2.4.3
linux/linux_kernel 2.4.10
linux/linux_kernel 2.4.11 (2 CPE variants)
linux/linux_kernel 2.4.12
linux/linux_kernel 2.4.13
linux/linux_kernel 2.4.14
linux/linux_kernel 2.4.15
... and 7 more
Published Dec 31, 2005
Tracked Since Feb 18, 2026