CVE-2004-0077
CVE-2004-0077
The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/160unverifiedexploitdbwww.exploit-db.com/exploits/154unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://archives.neohapsis.com/archives/vulnwatch/2004-q1/0040.htmlhttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000820http://fedoranews.org/updates/FEDORA-2004-079.shtmlhttp://frontal2.mandriva.com/security/advisories?name=MDKSA-2004:015http://isec.pl/vulnerabilities/isec-0014-mremap-unmap.txthttp://marc.info/?l=bugtraq&m=107711762014175&w=2http://marc.info/?l=bugtraq&m=107712137732553&w=2http://marc.info/?l=bugtraq&m=107755871932680&w=2http://security.gentoo.org/glsa/glsa-200403-02.xmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/15244https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A825https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A837