CVE-2005-2459
CVE-2005-2459
The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointer dereference, a different vulnerability than CVE-2005-2458.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://bugs.gentoo.org/show_bug.cgi?id=94584http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5http://secunia.com/advisories/16355/http://secunia.com/advisories/16500http://secunia.com/advisories/17826http://secunia.com/advisories/17918http://secunia.com/advisories/18056http://secunia.com/advisories/18059https://usn.ubuntu.com/169-1/http://www.debian.org/security/2005/dsa-921http://www.debian.org/security/2005/dsa-922http://www.mandriva.com/security/advisories?name=MDKSA-2005:219