Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-0685
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0685

Description:
Certain USB drivers in the Linux 2.4 kernel use the copy_to_user function on uninitialized structures, which could allow local users to obtain sensitive information by reading memory that was not cleared from previous usage.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/16931

TRUSTIX
  http://www.trustix.net/errata/2004/0041/

SAID
  Secunia Advisory: SA20338
  Secunia Advisory: SA20202
  Secunia Advisory: SA20162
  Secunia Advisory: SA20163

REDHAT
  http://www.redhat.com/support/errata/RHSA-2004-505.html
  http://www.redhat.com/support/errata/RHSA-2004-504.html

MISC
  http://www.securityspace.com/smysecure/catid.html?id=14580

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200408-24.xml

FEDORA

DEBIAN
  http://www.debian.org/security/2006/dsa-1067
  http://www.debian.org/security/2006/dsa-1082
  http://www.debian.org/security/2006/dsa-1069
  http://www.debian.org/security/2006/dsa-1070

CONFIRM
  http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=127921

CERT-VN
  981134

BID
  10892


Return to the previous page.