CVE-2004-0077
The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.
- Affected products
- Linux Kernel, Aa-Sources
- Redhat Bigmem Kernel
- = 2.4.20-8
- Redhat Kernel
- = 2.4.20-8
- Redhat Kernel Doc
- = 2.4.20-8
- Fix
- Available
- CVSS 2.0
- 7.2 HIGH
- EPSS
- 2.4% (83th percentile)
- NVD status
- Modified
- Published
- 2004-09-01
CVE-2004-0077 at NVD
4 known exploits for CVE-2004-0077
Proof-of-concept code and exploit modules indexed by Sploitus