CVE-2004-1235

Description

Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.

Software From Fixed in
redhat / linux 7.3 7.3.x
redhat / linux 9.0 9.0.x
linux / linux_kernel 2.4.0 2.4.0.x
linux / linux_kernel 2.4.0-test1 2.4.0-test1.x
linux / linux_kernel 2.4.0-test10 2.4.0-test10.x
linux / linux_kernel 2.4.0-test11 2.4.0-test11.x
linux / linux_kernel 2.4.0-test12 2.4.0-test12.x
linux / linux_kernel 2.4.0-test2 2.4.0-test2.x
linux / linux_kernel 2.4.0-test3 2.4.0-test3.x
linux / linux_kernel 2.4.0-test4 2.4.0-test4.x
linux / linux_kernel 2.4.0-test5 2.4.0-test5.x
linux / linux_kernel 2.4.0-test6 2.4.0-test6.x
linux / linux_kernel 2.4.0-test7 2.4.0-test7.x
linux / linux_kernel 2.4.0-test8 2.4.0-test8.x
linux / linux_kernel 2.4.0-test9 2.4.0-test9.x
linux / linux_kernel 2.4.1 2.4.1.x
linux / linux_kernel 2.4.10 2.4.10.x
linux / linux_kernel 2.4.11 2.4.11.x
linux / linux_kernel 2.4.12 2.4.12.x
linux / linux_kernel 2.4.13 2.4.13.x
linux / linux_kernel 2.4.14 2.4.14.x
linux / linux_kernel 2.4.15 2.4.15.x
linux / linux_kernel 2.4.16 2.4.16.x
linux / linux_kernel 2.4.17 2.4.17.x
linux / linux_kernel 2.4.18 2.4.18.x
linux / linux_kernel 2.4.18-pre1 2.4.18-pre1.x
linux / linux_kernel 2.4.18-pre2 2.4.18-pre2.x
linux / linux_kernel 2.4.18-pre3 2.4.18-pre3.x
linux / linux_kernel 2.4.18-pre4 2.4.18-pre4.x
linux / linux_kernel 2.4.18-pre5 2.4.18-pre5.x
linux / linux_kernel 2.4.18-pre6 2.4.18-pre6.x
linux / linux_kernel 2.4.18-pre7 2.4.18-pre7.x
linux / linux_kernel 2.4.18-pre8 2.4.18-pre8.x
linux / linux_kernel 2.4.19 2.4.19.x
linux / linux_kernel 2.4.19-pre1 2.4.19-pre1.x
linux / linux_kernel 2.4.19-pre2 2.4.19-pre2.x
linux / linux_kernel 2.4.19-pre3 2.4.19-pre3.x
linux / linux_kernel 2.4.19-pre4 2.4.19-pre4.x
linux / linux_kernel 2.4.19-pre5 2.4.19-pre5.x
linux / linux_kernel 2.4.19-pre6 2.4.19-pre6.x
linux / linux_kernel 2.4.2 2.4.2.x
linux / linux_kernel 2.4.20 2.4.20.x
linux / linux_kernel 2.4.21 2.4.21.x
linux / linux_kernel 2.4.21-pre1 2.4.21-pre1.x
linux / linux_kernel 2.4.21-pre4 2.4.21-pre4.x
linux / linux_kernel 2.4.21-pre7 2.4.21-pre7.x
linux / linux_kernel 2.4.22 2.4.22.x
linux / linux_kernel 2.4.23 2.4.23.x
linux / linux_kernel 2.4.23_ow2 2.4.23_ow2.x
linux / linux_kernel 2.4.23-pre9 2.4.23-pre9.x
linux / linux_kernel 2.4.24 2.4.24.x
linux / linux_kernel 2.4.24_ow1 2.4.24_ow1.x
linux / linux_kernel 2.4.25 2.4.25.x
linux / linux_kernel 2.4.26 2.4.26.x
linux / linux_kernel 2.4.27 2.4.27.x
linux / linux_kernel 2.4.27-pre1 2.4.27-pre1.x
linux / linux_kernel 2.4.27-pre2 2.4.27-pre2.x
linux / linux_kernel 2.4.27-pre3 2.4.27-pre3.x
linux / linux_kernel 2.4.27-pre4 2.4.27-pre4.x
linux / linux_kernel 2.4.27-pre5 2.4.27-pre5.x
linux / linux_kernel 2.4.28 2.4.28.x
linux / linux_kernel 2.4.29-rc2 2.4.29-rc2.x
linux / linux_kernel 2.4.3 2.4.3.x
linux / linux_kernel 2.4.4 2.4.4.x
linux / linux_kernel 2.4.5 2.4.5.x
linux / linux_kernel 2.4.6 2.4.6.x
linux / linux_kernel 2.4.7 2.4.7.x
linux / linux_kernel 2.4.8 2.4.8.x
linux / linux_kernel 2.4.9 2.4.9.x
linux / linux_kernel 2.6_test9_cvs 2.6_test9_cvs.x
linux / linux_kernel 2.6.0 2.6.0.x
linux / linux_kernel 2.6.0-test1 2.6.0-test1.x
linux / linux_kernel 2.6.0-test10 2.6.0-test10.x
linux / linux_kernel 2.6.0-test11 2.6.0-test11.x
linux / linux_kernel 2.6.0-test2 2.6.0-test2.x
linux / linux_kernel 2.6.0-test3 2.6.0-test3.x
linux / linux_kernel 2.6.0-test4 2.6.0-test4.x
linux / linux_kernel 2.6.0-test5 2.6.0-test5.x
linux / linux_kernel 2.6.0-test6 2.6.0-test6.x
linux / linux_kernel 2.6.0-test7 2.6.0-test7.x
linux / linux_kernel 2.6.0-test8 2.6.0-test8.x
linux / linux_kernel 2.6.0-test9 2.6.0-test9.x
linux / linux_kernel 2.6.1 2.6.1.x
linux / linux_kernel 2.6.1-rc1 2.6.1-rc1.x
linux / linux_kernel 2.6.1-rc2 2.6.1-rc2.x
linux / linux_kernel 2.6.10 2.6.10.x
linux / linux_kernel 2.6.10-rc2 2.6.10-rc2.x
linux / linux_kernel 2.6.2 2.6.2.x
linux / linux_kernel 2.6.3 2.6.3.x
linux / linux_kernel 2.6.4 2.6.4.x
linux / linux_kernel 2.6.5 2.6.5.x
linux / linux_kernel 2.6.6 2.6.6.x
linux / linux_kernel 2.6.6-rc1 2.6.6-rc1.x
linux / linux_kernel 2.6.7 2.6.7.x
linux / linux_kernel 2.6.7-rc1 2.6.7-rc1.x
linux / linux_kernel 2.6.8 2.6.8.x
linux / linux_kernel 2.6.8-rc1 2.6.8-rc1.x
linux / linux_kernel 2.6.8-rc2 2.6.8-rc2.x
linux / linux_kernel 2.6.8-rc3 2.6.8-rc3.x
linux / linux_kernel 2.6.9-2.6.20 2.6.9-2.6.20.x
suse / suse_linux 1.0 1.0.x
suse / suse_linux 8 8.x
suse / suse_linux 8.1 8.1.x
suse / suse_linux 8.2 8.2.x
suse / suse_linux 9.0 9.0.x
suse / suse_linux 9.1 9.1.x
suse / suse_linux 9.2 9.2.x
mandrakesoft / mandrake_linux 10.0 10.0.x
mandrakesoft / mandrake_linux 10.1 10.1.x
mandrakesoft / mandrake_linux 9.2 9.2.x
redhat / enterprise_linux 3.0 3.0.x
redhat / enterprise_linux 4.0 4.0.x
ubuntu / ubuntu_linux 4.1 4.1.x
redhat / enterprise_linux_desktop 3.0 3.0.x
redhat / enterprise_linux_desktop 4.0 4.0.x
conectiva / linux 10.0 10.0.x
mandrakesoft / mandrake_linux_corporate_server 2.1 2.1.x
mandrakesoft / mandrake_linux_corporate_server 3.0 3.0.x
mandrakesoft / mandrake_multi_network_firewall 8.2 8.2.x
avaya / converged_communications_server 2.0 2.0.x
avaya / intuity_audix - -
avaya / s8500 r2.0.0 r2.0.0.x
avaya / s8500 r2.0.1 r2.0.1.x
avaya / s8300 r2.0.0 r2.0.0.x
avaya / s8300 r2.0.1 r2.0.1.x
avaya / s8700 r2.0.0 r2.0.0.x
avaya / s8700 r2.0.1 r2.0.1.x
avaya / modular_messaging_message_storage_server 1.1 1.1.x
avaya / modular_messaging_message_storage_server 2.0 2.0.x
redhat / fedora_core core_1.0 core_1.0.x
redhat / fedora_core core_2.0 core_2.0.x
redhat / fedora_core core_3.0 core_3.0.x
avaya / mn100 - -
avaya / network_routing - -
avaya / s8710 r2.0.0 r2.0.0.x
avaya / s8710 r2.0.1 r2.0.1.x