Oval Definition:oval:org.mitre.oval:def:10264
Revision Date:2013-04-29Version:11
Title:Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589.
Description:Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-1264
Platform(s):CentOS Linux 4
Oracle Linux 4
Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • RHEL4, CentOS4 or Oracle Linux 4
  • The operating system installed on the system is Red Hat Enterprise Linux 4
  • OR CentOS Linux 4.x
  • OR Oracle Linux 4.x
  • AND Configuration section
  • kernel-smp-devel is earlier than 0:2.6.9-11.EL
  • OR kernel-hugemem is earlier than 0:2.6.9-11.EL
  • OR kernel-devel is earlier than 0:2.6.9-11.EL
  • OR kernel is earlier than 0:2.6.9-11.EL
  • OR kernel-hugemem-devel is earlier than 0:2.6.9-11.EL
  • OR kernel-doc is earlier than 0:2.6.9-11.EL
  • OR kernel-smp is earlier than 0:2.6.9-11.EL
  • BACK