VDB
CVE-2004-1333
CVE-2004-1333
PUBLISHED
CVSS 2.0999999046325684 LOW
Integer overflow in the vc_resize function in the Linux kernel 2.4 and 2.6 before 2.6.10 allows local users to cause a denial of service (kernel crash) via a short new screen value, which leads to a buffer overflow.
EPSS 0.96% · 58.2th percentile
Risk Scores
CVSS 2.0
2.0999999046325684
EPSS Score
0.96%
58.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| redhat | fedora_core | core_3.0, core_1.0, core_2.0 |
| linux | linux_kernel | 2.4.0, 2.4.0, 2.4.0 |
| redhat | linux | 7.3, 9.0, 7.3 |
| n/a | n/a | n/a |
Timeline
- Dec 15, 2004 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- USN-47-1 vendor-advisory
- 20162 third-party-advisory
- DSA-1069 vendor-advisory
- MDKSA-2005:219 vendor-advisory
- 20202 third-party-advisory
- 20338 third-party-advisory
- 20163 third-party-advisory
- 20041215 fun with linux kernel mailing-list
- linux-vcresize-dos(18523) vdb
- MDKSA-2005:218 vendor-advisory
- DSA-1067 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2004-1333 advisory
- https://usn.ubuntu.com/47-1 url
- http://www.novell.com/linux/security/advisories/2005_18_kernel.html url
- http://www.securityfocus.com/bid/11956 url
- http://www.debian.org/security/2006/dsa-1070 technical
- http://www.guninski.com/where_do_you_want_billg_to_go_today_2.html patch
- http://secunia.com/advisories/17826 technical
- http://www.debian.org/security/2006/dsa-1082 technical
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532 patch