Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-0814
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0814

Description:
Multiple race conditions in the terminal layer in Linux 2.4.x, and 2.6.x before 2.6.9, allow (1) local users to obtain portions of kernel data via a TIOCSETD ioctl call to a terminal interface that is being accessed by another thread, or (2) remote attackers to cause a denial of service (panic) by switching from console to PPP line discipline, then quickly sending data that is received during the switch.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/17816

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-293.html

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:022

FEDORA

CONFIRM
  http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=133110
  http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=131672

BUGTRAQ
  http://marc.theaimsgroup.com/?l=bugtraq&m=110306397320336&w=2
  http://www.securityfocus.com/archive/1/379005

BID
  11492
  11491


Return to the previous page.