VDB
CVE-2004-0109
CVE-2004-0109
PUBLISHED
CVSS 4.599999904632568 MEDIUM
Buffer overflow in the ISO9660 file system component for Linux kernel 2.4.x, 2.5.x and 2.6.x, allows local users with physical access to overflow kernel memory and execute arbitrary code via a malformed CD containing a long symbolic link entry.
EPSS 0.56% · 43.4th percentile
Risk Scores
CVSS 2.0
4.599999904632568
EPSS Score
0.56%
43.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| linux | linux_kernel | 2.5.0, 2.6.0, 2.4.0 |
| n/a | n/a | * |
Timeline
- Apr 16, 2004 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- linux-iso9660-bo(15866) vdb
- 11464 third-party-advisory
- O-127 third-party-advisory
- 11362 third-party-advisory
- oval:org.mitre.oval:def:940 vdb
- 11891 third-party-advisory
- SuSE-SA:2004:009 vendor-advisory
- TLSA-2004-14 vendor-advisory
- DSA-489 vendor-advisory
- DSA-481 vendor-advisory
- ESA-20040428-004 vendor-advisory
- O-121 third-party-advisory
- 11494 third-party-advisory
- MDKSA-2004:029 vendor-advisory
- RHSA-2004:166 vendor-advisory
- 11518 third-party-advisory
- 11469 third-party-advisory
- 11986 third-party-advisory
- RHSA-2004:106 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2004-0109 advisory
…and 23 more