Linux Kernel SYS_IA32.C Unspecified Buffer Overflow Vulnerability
BID:11864
Info
Linux Kernel SYS_IA32.C Unspecified Buffer Overflow Vulnerability
| Bugtraq ID: | 11864 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Unknown |
| Local: | Unknown |
| Published: | Nov 29 2004 12:00AM |
| Updated: | Nov 29 2004 12:00AM |
| Credit: | Jeremy Fitzhardinge <[email protected]> is credited with the discovery of this issue. |
| Vulnerable: |
Linux kernel 2.6.10 rc2 Linux kernel 2.6.9 Linux kernel 2.6.8 rc3 Linux kernel 2.6.8 rc2 Linux kernel 2.6.8 rc1 Linux kernel 2.6.8 Linux kernel 2.6.7 rc1 Linux kernel 2.6.7 Linux kernel 2.6.6 rc1 Linux kernel 2.6.6 Linux kernel 2.6.5 Linux kernel 2.6.4 Linux kernel 2.6.3 Linux kernel 2.6.2 Linux kernel 2.6.1 -rc2 Linux kernel 2.6.1 -rc1 Linux kernel 2.6.1 Linux kernel 2.6 |
| Not Vulnerable: | |
Discussion
Linux Kernel SYS_IA32.C Unspecified Buffer Overflow Vulnerability
An unspecified buffer overflow vulnerability reportedly affects the 'sys_ia32.c' file of the Linux kernel. This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into finite kernel buffers.
It has been speculated that an attacker might leverage this issue to overflow the affected buffer. It may be possible to overflow critical memory, facilitating code execution or a denial of service condition. It should be noted that this is entirely conjecture and has not been verified.
An unspecified buffer overflow vulnerability reportedly affects the 'sys_ia32.c' file of the Linux kernel. This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into finite kernel buffers.
It has been speculated that an attacker might leverage this issue to overflow the affected buffer. It may be possible to overflow critical memory, facilitating code execution or a denial of service condition. It should be noted that this is entirely conjecture and has not been verified.
Exploit / POC
Linux Kernel SYS_IA32.C Unspecified Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Linux Kernel SYS_IA32.C Unspecified Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Linux Kernel SYS_IA32.C Unspecified Buffer Overflow Vulnerability
References:
References:
- Buffer overrun in arch/x86_64/sys_ia32.c:sys32_ni_syscall() (Jeremy Fitzhardinge
) - kernel.org Homepage. (Linux Kernel)