VulnerabilityModified
CVE-2005-0176
The shmctl function in Linux 2.6.9 and earlier allows local users to unlock the memory of other processes, which could cause sensitive memory to be swapped to disk, which could allow it to be read by other users once it has been released.
MEDIUM 5.0EPSS 2.22%
Does this matter?
Lower severity and a low EPSS score (2.22%). Track it; it rarely justifies an emergency change on its own.
Description
The shmctl function in Linux 2.6.9 and earlier allows local users to unlock the memory of other processes, which could cause sensitive memory to be swapped to disk, which could allow it to be read by other users once it has been released.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 2.22% probability · 82th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- cve@mitre.org
References
- ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U
- http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930Vendor Advisory
- http://marc.info/?l=full-disclosure&m=110846102231365&w=2
- http://secunia.com/advisories/19607
- http://www.redhat.com/support/errata/RHSA-2005-092.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2005-472.html
- http://www.securityfocus.com/bid/12598
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1225
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8778
- ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U
- http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930Vendor Advisory
- http://marc.info/?l=full-disclosure&m=110846102231365&w=2
- http://secunia.com/advisories/19607
- http://www.redhat.com/support/errata/RHSA-2005-092.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2005-472.html
- http://www.securityfocus.com/bid/12598
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1225
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8778
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.