Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2004-2013

Опубликовано: 31 дек. 2004
Источник: debian
EPSS Низкий

Описание

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.

Примечания

  • kernel 2.4.23-pre5 to 2.4.25; 2.4.26 and 2.6 are reported ok

EPSS

Процентиль: 25%
0.00086
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
около 21 года назад

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.

CVSS3: 7.8
github
почти 4 года назад

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.

EPSS

Процентиль: 25%
0.00086
Низкий