Memory leak in the seq_file implementation in the SCSI procfs interface (sg.c) in Linux kernel 2.6.13 and earlier allows local users to cause a denial of service (memory consumption) via certain repeated reads from the /proc/scsi/sg/devices file, which is not properly handled when the next() iterator returns NULL or an error.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/17826 - Permissions Required, Third Party Advisory | |
References | () http://secunia.com/advisories/17918 - Permissions Required, Third Party Advisory | |
References | () http://secunia.com/advisories/18510 - Permissions Required, Third Party Advisory | |
References | () http://secunia.com/advisories/19374 - Permissions Required, Third Party Advisory | |
References | () http://www.debian.org/security/2006/dsa-1017 - Third Party Advisory | |
References | () http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=729d70f5dfd663b44bca68a4479c96bde7e535d6 - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2005:218 - Broken Link | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2005:219 - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2005:220 - | |
References | () http://www.redhat.com/support/errata/RHSA-2006-0101.html - Not Applicable | |
References | () http://www.securityfocus.com/archive/1/419522/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/427980/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/14790 - Third Party Advisory, VDB Entry | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9954 - |
07 Nov 2023, 01:57
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2005-09-06 17:03
Updated : 2024-11-21 00:00
NVD link : CVE-2005-2800
Mitre link : CVE-2005-2800
CVE.ORG link : CVE-2005-2800
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-399
Resource Management Errors