Secunia Logo
 
CVE Reference: CVE-2004-1058
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-1058

Description:
Race condition in Linux kernel 2.6 allows local users to read the environment variables of another process that is still spawning via /proc/.../cmdline.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/17151

UBUNTU
  http://www.ubuntulinux.org/support/documentation/usn/usn-38-1

SUSE
  http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html

SGI

SAID
  Secunia Advisory: SA18684
  Secunia Advisory: SA19038
  Secunia Advisory: SA19369
  Secunia Advisory: SA19607
  Secunia Advisory: SA21476

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-293.html
  http://www.redhat.com/support/errata/RHSA-2006-0191.html
  http://www.redhat.com/support/errata/RHSA-2006-0190.html

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:022

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200408-24.xml

FEDORA

DEBIAN
  http://www.debian.org/security/2006/dsa-1018

BID
  11052
  11937


Return to the previous page.