// For flags

CVE-2003-0985

Linux Kernel 2.4.23/2.6.0 - 'do_mremap()' Bound Checking Validator

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

4
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.

La llamada de sistema mremap (do_mremap) en Linux kernel 2.2, 2.4 y 2.6 y posiblemente otras versiones anteriores a 2.4.24, no realiza adecuadamente comprobaciones de límites, lo que permite a usuarios locales causar una denegación de servicio y posiblemente ganar privilegios causando que se reasigne una área de memoria virtual (WMA) para crea una WMA de longitud cero, vulnerabilidad distinta a CAN-2004-0077.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2003-12-16 CVE Reserved
  • 2004-01-05 CVE Published
  • 2004-01-06 First Exploit
  • 2024-03-09 EPSS Updated
  • 2024-08-08 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
CAPEC
References (51)
URL Date SRC
ftp://patches.sgi.com/support/free/security/advisories/20040102-01-U 2018-05-03
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000799 2018-05-03
http://download.immunix.org/ImmunixOS/7.3/updates/IMNX-2004-73-001-01 2018-05-03
http://marc.info/?l=bugtraq&m=107332754521495&w=2 2018-05-03
http://www.debian.org/security/2004/dsa-413 2018-05-03
http://www.debian.org/security/2004/dsa-417 2018-05-03
http://www.debian.org/security/2004/dsa-423 2018-05-03
http://www.debian.org/security/2004/dsa-427 2018-05-03
http://www.debian.org/security/2004/dsa-439 2018-05-03
http://www.debian.org/security/2004/dsa-440 2018-05-03
http://www.debian.org/security/2004/dsa-442 2018-05-03
http://www.debian.org/security/2004/dsa-450 2018-05-03
http://www.debian.org/security/2004/dsa-470 2018-05-03
http://www.debian.org/security/2004/dsa-475 2018-05-03
http://www.debian.org/security/2006/dsa-1067 2018-05-03
http://www.debian.org/security/2006/dsa-1069 2018-05-03
http://www.debian.org/security/2006/dsa-1070 2018-05-03
http://www.debian.org/security/2006/dsa-1082 2018-05-03
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:001 2018-05-03
http://www.novell.com/linux/security/advisories/2004_03_linux_kernel.html 2018-05-03
http://www.redhat.com/support/errata/RHSA-2003-416.html 2018-05-03
http://www.redhat.com/support/errata/RHSA-2003-418.html 2018-05-03
http://www.redhat.com/support/errata/RHSA-2003-419.html 2018-05-03
https://access.redhat.com/security/cve/CVE-2003-0985 2004-01-05
https://bugzilla.redhat.com/show_bug.cgi?id=1617115 2004-01-05
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test10
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test11
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test12
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test8
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.0
Search vendor "Linux" for product "Linux Kernel" and version "2.4.0"
test9
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.1
Search vendor "Linux" for product "Linux Kernel" and version "2.4.1"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.2
Search vendor "Linux" for product "Linux Kernel" and version "2.4.2"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.3
Search vendor "Linux" for product "Linux Kernel" and version "2.4.3"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.4
Search vendor "Linux" for product "Linux Kernel" and version "2.4.4"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.5
Search vendor "Linux" for product "Linux Kernel" and version "2.4.5"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.6
Search vendor "Linux" for product "Linux Kernel" and version "2.4.6"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.7
Search vendor "Linux" for product "Linux Kernel" and version "2.4.7"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.8
Search vendor "Linux" for product "Linux Kernel" and version "2.4.8"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.9
Search vendor "Linux" for product "Linux Kernel" and version "2.4.9"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.10
Search vendor "Linux" for product "Linux Kernel" and version "2.4.10"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.11
Search vendor "Linux" for product "Linux Kernel" and version "2.4.11"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.12
Search vendor "Linux" for product "Linux Kernel" and version "2.4.12"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.13
Search vendor "Linux" for product "Linux Kernel" and version "2.4.13"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.14
Search vendor "Linux" for product "Linux Kernel" and version "2.4.14"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.15
Search vendor "Linux" for product "Linux Kernel" and version "2.4.15"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.16
Search vendor "Linux" for product "Linux Kernel" and version "2.4.16"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.17
Search vendor "Linux" for product "Linux Kernel" and version "2.4.17"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
x86
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.18
Search vendor "Linux" for product "Linux Kernel" and version "2.4.18"
pre8
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre2
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre3
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre5
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.19
Search vendor "Linux" for product "Linux Kernel" and version "2.4.19"
pre6
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.20
Search vendor "Linux" for product "Linux Kernel" and version "2.4.20"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
pre1
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
pre4
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.21
Search vendor "Linux" for product "Linux Kernel" and version "2.4.21"
pre7
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.22
Search vendor "Linux" for product "Linux Kernel" and version "2.4.22"
-
Affected
Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.4.23
Search vendor "Linux" for product "Linux Kernel" and version "2.4.23"
-
Affected