CVE-2005-4605
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.0%
from disclosure to weapon1310 days
Published on NVDJan 3
1st PoC+1310d
exploitation probability
1.0%top 39% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The procfs code (proc_misc.c) in Linux 2.6.14.3 and other versions before 2.6.15 allows attackers to read sensitive kernel memory via unspecified vectors in which a signed value is added to an unsigned value.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/9363⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://linux.bkbits.net:8080/linux-2.6/cset%4043b562ae6hJGLWZA4TNf2k-RzXnVlQhttp://linux.bkbits.net:8080/linux-2.6/gnupatch%4043b562ae6hJGLWZA4TNf2k-RzXnVlQhttp://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.htmlhttp://marc.info/?l=full-disclosure&m=113535380422339&w=2http://secunia.com/advisories/18216http://secunia.com/advisories/18351http://secunia.com/advisories/18510http://secunia.com/advisories/18527http://secunia.com/advisories/18788http://secunia.com/advisories/19038http://secunia.com/advisories/19374https://exchange.xforce.ibmcloud.com/vulnerabilities/23811