VulnerabilityModified
CVE-2004-0495
Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.
HIGH 7.2EPSS 0.42%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.42%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 0.42% probability · 36th percentile
- CISA KEV
- Not listed
- Affected
- avaya/converged communications server · avaya/modular messaging message storage server · gentoo/linux · linux/linux kernel · redhat/enterprise linux · suse/suse linux · avaya/intuity audix · suse/suse email server · suse/suse linux admin-cd for firewall · suse/suse linux connectivity server · suse/suse linux database server · suse/suse linux firewall cd · suse/suse linux office server · suse/suse office server · avaya/s8300 · avaya/s8500 · avaya/s8700 · conectiva/linux
- Source
- cve@mitre.org
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000845
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000846
- http://lwn.net/Articles/91155/
- http://security.gentoo.org/glsa/glsa-200407-02.xmlVendor Advisory
- http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:066
- http://www.novell.com/linux/security/advisories/2004_20_kernel.html
- http://www.redhat.com/support/errata/RHSA-2004-255.htmlPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2004-260.html
- http://www.securityfocus.com/bid/10566Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16449
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10155
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2961
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000845
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000846
- http://lwn.net/Articles/91155/
- http://security.gentoo.org/glsa/glsa-200407-02.xmlVendor Advisory
- http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:066
- http://www.novell.com/linux/security/advisories/2004_20_kernel.html
- http://www.redhat.com/support/errata/RHSA-2004-255.htmlPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2004-260.html
- http://www.securityfocus.com/bid/10566Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16449
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10155
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2961
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.