Linux Kernel ELF Loader Mismatched Architecture Local Denial of Service Vulnerability
BID:18174
Info
Linux Kernel ELF Loader Mismatched Architecture Local Denial of Service Vulnerability
| Bugtraq ID: | 18174 |
| Class: | Design Error |
| CVE: |
CVE-2004-0138 |
| Remote: | No |
| Local: | Yes |
| Published: | May 30 2006 12:00AM |
| Updated: | Jan 10 2007 08:51PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
Linux kernel 2.4.24 -ow1 Linux kernel 2.4.24 Linux kernel 2.4.23 -pre9 Linux kernel 2.4.23 -ow2 Linux kernel 2.4.23 Linux kernel 2.4.22 Linux kernel 2.4.21 pre7 Linux kernel 2.4.21 pre4 Linux kernel 2.4.21 pre1 Linux kernel 2.4.21 Linux kernel 2.4.20 Linux kernel 2.4.19 -pre6 Linux kernel 2.4.19 -pre5 Linux kernel 2.4.19 -pre4 Linux kernel 2.4.19 -pre3 Linux kernel 2.4.19 -pre2 Linux kernel 2.4.19 -pre1 Linux kernel 2.4.19 Linux kernel 2.4.18 pre-8 Linux kernel 2.4.18 pre-7 Linux kernel 2.4.18 pre-6 Linux kernel 2.4.18 pre-5 Linux kernel 2.4.18 pre-4 Linux kernel 2.4.18 pre-3 Linux kernel 2.4.18 pre-2 Linux kernel 2.4.18 pre-1 Linux kernel 2.4.18 x86 Linux kernel 2.4.18 Linux kernel 2.4.17 Linux kernel 2.4.16 Linux kernel 2.4.15 Linux kernel 2.4.14 Linux kernel 2.4.13 Linux kernel 2.4.12 Linux kernel 2.4.11 Linux kernel 2.4.10 Linux kernel 2.4.9 Linux kernel 2.4.8 Linux kernel 2.4.7 Linux kernel 2.4.6 Linux kernel 2.4.5 Linux kernel 2.4.4 Linux kernel 2.4.3 Linux kernel 2.4.2 Linux kernel 2.4.1 Linux kernel 2.4 .0-test9 Linux kernel 2.4 .0-test8 Linux kernel 2.4 .0-test7 Linux kernel 2.4 .0-test6 Linux kernel 2.4 .0-test5 Linux kernel 2.4 .0-test4 Linux kernel 2.4 .0-test3 Linux kernel 2.4 .0-test2 Linux kernel 2.4 .0-test12 Linux kernel 2.4 .0-test11 Linux kernel 2.4 .0-test10 Linux kernel 2.4 .0-test1 Linux kernel 2.4 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Debian Linux 3.0 sparc Debian Linux 3.0 s/390 Debian Linux 3.0 ppc Debian Linux 3.0 mipsel Debian Linux 3.0 mips Debian Linux 3.0 m68k Debian Linux 3.0 ia-64 Debian Linux 3.0 ia-32 Debian Linux 3.0 hppa |
| Not Vulnerable: |
Linux kernel 2.4.25 |
Discussion
Linux Kernel ELF Loader Mismatched Architecture Local Denial of Service Vulnerability
The Linux kernel is prone to a local denial-of-service vulnerability. This issue is due to a flaw in the ELF object file loader.
This vulnerability allows local users to cause a kernel panic, denying further service to legitimate users.
This issue affects Linux kernel versions prior to 2.4.25.
The Linux kernel is prone to a local denial-of-service vulnerability. This issue is due to a flaw in the ELF object file loader.
This vulnerability allows local users to cause a kernel panic, denying further service to legitimate users.
This issue affects Linux kernel versions prior to 2.4.25.
Exploit / POC
Linux Kernel ELF Loader Mismatched Architecture Local Denial of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Linux Kernel ELF Loader Mismatched Architecture Local Denial of Service Vulnerability
Solution:
Linux kernel version 2.4.25 was released to address this issue.
Please see the references for more information and vendor advisories.
Linux kernel 2.4 .0-test3
Linux kernel 2.4 .0-test6
Linux kernel 2.4 .0-test8
Linux kernel 2.4 .0-test7
Linux kernel 2.4
Linux kernel 2.4 .0-test2
Linux kernel 2.4 .0-test11
Linux kernel 2.4 .0-test10
Linux kernel 2.4 .0-test4
Linux kernel 2.4 .0-test5
Linux kernel 2.4 .0-test1
Linux kernel 2.4 .0-test12
Linux kernel 2.4 .0-test9
Linux kernel 2.4.1
Linux kernel 2.4.10
Linux kernel 2.4.11
Linux kernel 2.4.12
Linux kernel 2.4.13
Linux kernel 2.4.14
Linux kernel 2.4.15
Linux kernel 2.4.16
Linux kernel 2.4.17
Linux kernel 2.4.18 pre-8
Linux kernel 2.4.18 pre-7
Linux kernel 2.4.18
Linux kernel 2.4.18 pre-6
Linux kernel 2.4.18 pre-3
Linux kernel 2.4.18 pre-2
Linux kernel 2.4.18 pre-4
Linux kernel 2.4.18 pre-5
Linux kernel 2.4.18 x86
Linux kernel 2.4.18 pre-1
Linux kernel 2.4.19 -pre4
Linux kernel 2.4.19 -pre1
Linux kernel 2.4.19 -pre6
Linux kernel 2.4.19 -pre2
Linux kernel 2.4.19
Linux kernel 2.4.19 -pre5
Linux kernel 2.4.19 -pre3
Linux kernel 2.4.2
Linux kernel 2.4.20
Linux kernel 2.4.21
Linux kernel 2.4.21 pre1
Linux kernel 2.4.21 pre4
Linux kernel 2.4.21 pre7
Linux kernel 2.4.22
Linux kernel 2.4.23
Linux kernel 2.4.23 -ow2
Linux kernel 2.4.23 -pre9
Linux kernel 2.4.24
Linux kernel 2.4.24 -ow1
Linux kernel 2.4.3
Linux kernel 2.4.4
Linux kernel 2.4.5
Linux kernel 2.4.6
Linux kernel 2.4.7
Linux kernel 2.4.8
Linux kernel 2.4.9
Solution:
Linux kernel version 2.4.25 was released to address this issue.
Please see the references for more information and vendor advisories.
Linux kernel 2.4 .0-test3
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test6
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test8
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test7
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test2
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test11
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test10
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test4
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test5
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test1
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test12
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4 .0-test9
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.1
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.10
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.11
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.12
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.13
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.14
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.15
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.16
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.17
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-8
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-7
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18
-
Debian kernel-headers-2.4.18-sparc_22woody1_all.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-image-sparc-2.4/ kernel-headers-2.4.18-sparc_22woody1_all.deb -
Debian kernel-image-2.4.18-sun4u-smp_22woody1_sparc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-image-sparc-2.4/ kernel-image-2.4.18-sun4u-smp_22woody1_sparc.deb -
Debian kernel-image-2.4.18-sun4u_22woody1_sparc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-image-sparc-2.4/ kernel-image-2.4.18-sun4u_22woody1_sparc.deb -
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-6
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-3
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-2
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-4
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-5
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 x86
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.18 pre-1
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19 -pre4
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19 -pre1
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19 -pre6
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19 -pre2
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19
-
Debian kernel-doc-2.4.19_2.4.19-4.woody3_all.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-source-2.4.19/ke rnel-doc-2.4.19_2.4.19-4.woody3_all.deb -
Debian kernel-headers-2.4.19-sparc_26woody1_all.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-image-sparc-2.4/ kernel-headers-2.4.19-sparc_26woody1_all.deb -
Debian kernel-headers-2.4.19_2.4.19-0.020911.1.woody5_mips.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-patch-2.4.19-mip s/kernel-headers-2.4.19_2.4.19-0.020911.1.woody5_mips.deb -
Debian kernel-image-2.4.19-r4k-ip22_2.4.19-0.020911.1.woody5_mips.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-patch-2.4.19-mip s/kernel-image-2.4.19-r4k-ip22_2.4.19-0.020911.1.woody5_mips.deb -
Debian kernel-image-2.4.19-r5k-ip22_2.4.19-0.020911.1.woody5_mips.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-patch-2.4.19-mip s/kernel-image-2.4.19-r5k-ip22_2.4.19-0.020911.1.woody5_mips.deb -
Debian kernel-image-2.4.19-sun4u-smp_26woody1_sparc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-image-sparc-2.4/ kernel-image-2.4.19-sun4u-smp_26woody1_sparc.deb -
Debian kernel-image-2.4.19-sun4u_26woody1_sparc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-image-sparc-2.4/ kernel-image-2.4.19-sun4u_26woody1_sparc.deb -
Debian kernel-patch-2.4.19-mips_2.4.19-0.020911.1.woody5_all.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-patch-2.4.19-mip s/kernel-patch-2.4.19-mips_2.4.19-0.020911.1.woody5_all.deb -
Debian kernel-source-2.4.19_2.4.19-4.woody3_all.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-source-2.4.19/ke rnel-source-2.4.19_2.4.19-4.woody3_all.deb -
Debian mips-tools_2.4.19-0.020911.1.woody5_mips.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/k/kernel-patch-2.4.19-mip s/mips-tools_2.4.19-0.020911.1.woody5_mips.deb -
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19 -pre5
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.19 -pre3
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.2
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.20
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.21
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.21 pre1
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.21 pre4
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.21 pre7
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.22
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.23
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.23 -ow2
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.23 -pre9
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.24
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.24 -ow1
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.3
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.4
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.5
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.6
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.7
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.8
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
Linux kernel 2.4.9
-
Linux linux-2.4.25.tar.bz2
http://www.kernel.org/pub/linux/kernel/v2.4/linux-2.4.25.tar.bz2
References
Linux Kernel ELF Loader Mismatched Architecture Local Denial of Service Vulnerability
References:
References:
- Linux 2.4.25 ChangeLog (Linux Kernel)