CVE-2004-1058

Race condition in Linux kernel 2.6 allows local users to read the environment variables of another process that is still spawning via /proc/.../cmdline.
References
Link Resource
ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html
http://secunia.com/advisories/18684
http://secunia.com/advisories/19038
http://secunia.com/advisories/19369
http://secunia.com/advisories/19607
http://secunia.com/advisories/21476
http://www.debian.org/security/2006/dsa-1018
http://www.gentoo.org/security/en/glsa/glsa-200408-24.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:022
http://www.redhat.com/support/errata/RHSA-2005-293.html
http://www.redhat.com/support/errata/RHSA-2006-0190.html
http://www.redhat.com/support/errata/RHSA-2006-0191.html
http://www.securityfocus.com/bid/11052
http://www.securityfocus.com/bid/11937 Patch Vendor Advisory
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532
https://exchange.xforce.ibmcloud.com/vulnerabilities/17151
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10427
https://usn.ubuntu.com/38-1/
ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html
http://secunia.com/advisories/18684
http://secunia.com/advisories/19038
http://secunia.com/advisories/19369
http://secunia.com/advisories/19607
http://secunia.com/advisories/21476
http://www.debian.org/security/2006/dsa-1018
http://www.gentoo.org/security/en/glsa/glsa-200408-24.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:022
http://www.redhat.com/support/errata/RHSA-2005-293.html
http://www.redhat.com/support/errata/RHSA-2006-0190.html
http://www.redhat.com/support/errata/RHSA-2006-0191.html
http://www.securityfocus.com/bid/11052
http://www.securityfocus.com/bid/11937 Patch Vendor Advisory
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532
https://exchange.xforce.ibmcloud.com/vulnerabilities/17151
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10427
https://usn.ubuntu.com/38-1/
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:2.6.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test10:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test11:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test7:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test8:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test9:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.1:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.1:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.3:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.4:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.5:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.6:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.6:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.7:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.7:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.9:2.6.20:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.10:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6_test9_cvs:*:*:*:*:*:*:*
cpe:2.3:o:ubuntu:ubuntu_linux:4.1:*:ia64:*:*:*:*:*
cpe:2.3:o:ubuntu:ubuntu_linux:4.1:*:ppc:*:*:*:*:*

History

20 Nov 2024, 23:49

Type Values Removed Values Added
References () ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U - () ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U -
References () http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html - () http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html -
References () http://secunia.com/advisories/18684 - () http://secunia.com/advisories/18684 -
References () http://secunia.com/advisories/19038 - () http://secunia.com/advisories/19038 -
References () http://secunia.com/advisories/19369 - () http://secunia.com/advisories/19369 -
References () http://secunia.com/advisories/19607 - () http://secunia.com/advisories/19607 -
References () http://secunia.com/advisories/21476 - () http://secunia.com/advisories/21476 -
References () http://www.debian.org/security/2006/dsa-1018 - () http://www.debian.org/security/2006/dsa-1018 -
References () http://www.gentoo.org/security/en/glsa/glsa-200408-24.xml - () http://www.gentoo.org/security/en/glsa/glsa-200408-24.xml -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2005:022 - () http://www.mandriva.com/security/advisories?name=MDKSA-2005:022 -
References () http://www.redhat.com/support/errata/RHSA-2005-293.html - () http://www.redhat.com/support/errata/RHSA-2005-293.html -
References () http://www.redhat.com/support/errata/RHSA-2006-0190.html - () http://www.redhat.com/support/errata/RHSA-2006-0190.html -
References () http://www.redhat.com/support/errata/RHSA-2006-0191.html - () http://www.redhat.com/support/errata/RHSA-2006-0191.html -
References () http://www.securityfocus.com/bid/11052 - () http://www.securityfocus.com/bid/11052 -
References () http://www.securityfocus.com/bid/11937 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/11937 - Patch, Vendor Advisory
References () https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532 - () https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152532 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/17151 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/17151 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10427 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10427 -
References () https://usn.ubuntu.com/38-1/ - () https://usn.ubuntu.com/38-1/ -

Information

Published : 2005-01-10 05:00

Updated : 2024-11-20 23:49


NVD link : CVE-2004-1058

Mitre link : CVE-2004-1058

CVE.ORG link : CVE-2004-1058


JSON object : View

Products Affected

linux

  • linux_kernel

ubuntu

  • ubuntu_linux