CVE-2005-3358
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.0%
from disclosure to weapon21 days
Published on NVDDec 14
1st PoC+21d
exploitation probability
1.0%top 40% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Linux kernel before 2.6.15 allows local users to cause a denial of service (panic) via a set_mempolicy call with a 0 bitmask, which causes a panic when a page fault occurs.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/27031⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://linux.bkbits.net:8080/linux-2.6/cset%4042307e9fp8ihEMrfaoPMp_agDevQNAhttp://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=175683http://secunia.com/advisories/18216http://secunia.com/advisories/18510http://secunia.com/advisories/18788http://secunia.com/advisories/19038http://secunia.com/advisories/19374http://securitytracker.com/id?1015433https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10410http://www.debian.org/security/2006/dsa-1017http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.15