CVE-2005-0666
Summary
| CVE | CVE-2005-0666 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-05-02 04:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Unknown vulnerability in PaX from the September 2003 release to 2.2 before 2005.03.05, related to SEGMEXEC or RANDEXEC and VMA mirroring, allows local users and possibly remote attackers to bypass intended access restrictions and execute arbitrary code. |
Risk And Classification
Primary CVSS: v2.0 4.6 from [email protected]
AV:L/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:L/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | The Pax Team | Pax Linux | 2.2 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.20 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.21 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.22 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.23 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.24 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.25 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.26 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.27 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.4.28 | All | All | All |
| Application | The Pax Team | Pax Linux | 2.6.5 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Secunia - Advisories - PaX VMA Mirroring Unmapping Privilege Escalation Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| PaX VMA Mirroring Privilege Escalation Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Exploit |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.