VulnerabilityModified
CVE-2004-1983
The arch_get_unmapped_area function in mmap.c in the PaX patches for Linux kernel 2.6, when Address Space Layout Randomization (ASLR) is enabled, allows local users to cause a denial of service (infinite loop) via unknown attack vectors.
LOW 2.1EPSS 0.93%
Does this matter?
Lower severity and a low EPSS score (0.93%). Track it; it rarely justifies an emergency change on its own.
Description
The arch_get_unmapped_area function in mmap.c in the PaX patches for Linux kernel 2.6, when Address Space Layout Randomization (ASLR) is enabled, allows local users to cause a denial of service (infinite loop) via unknown attack vectors.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 0.93% probability · 59th percentile
- CISA KEV
- Not listed
- Affected
- the pax team/pax linux · gentoo/linux
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=108360001130312&w=2
- http://marc.info/?l=bugtraq&m=108420555920369&w=2
- http://pax.grsecurity.net/Patch
- http://security.gentoo.org/glsa/glsa-200407-02.xmlVendor Advisory
- http://www.securityfocus.com/bid/10264Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16037
- http://marc.info/?l=bugtraq&m=108360001130312&w=2
- http://marc.info/?l=bugtraq&m=108420555920369&w=2
- http://pax.grsecurity.net/Patch
- http://security.gentoo.org/glsa/glsa-200407-02.xmlVendor Advisory
- http://www.securityfocus.com/bid/10264Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16037
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.