Back to Database
Status published
Low
CVE-2004-0587
Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local...
Vulnerability Description
Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-0587
Credits & Attribution
No credits recorded in the NVD database.
References
- http://securitytracker.com/id?1010057
- http://www.redhat.com/support/errata/RHSA-2004-413.html
- http://www.redhat.com/support/errata/RHSA-2004-418.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9398
- http://www.novell.com/linux/security/advisories/2004_10_kernel.html
- http://lwn.net/Articles/91155/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16062
- http://www.securityfocus.com/bid/10279
- http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:066
- ftp://patches.sgi.com/support/free/security/advisories/20040804-01-U.asc
More from mandrakesoft
View All →CVE-2007-1352
Integer overflow in the FontFileInitTable function in X.Org libXfont before...
Low
3.8
CVE-2005-2377
nss_ldap 181 to versions before 213, as used in Mandrake...
Medium
5
CVE-2005-1379
The LAM runtime environment package (lam-runtime-7.0.6-2mdk) on Mandrake Linux installs...
Medium
4.6
CVE-2004-2395
Memory leak in passwd 0.68 allows local users to cause...
Low
2.1
CVE-2004-2394
Off-by-one error in passwd 0.68 and earlier, when using the...
Low
2.1
Affected Vendor
mandrakesoft
View all reports →Affected Software
mandrake linux, mandrake linux corporate server, fedora core, suse linux
Vulnerable Versions:
9.2, 10.0, 2.1, core_1.0, 8, 8.1, 9.0
Timeline
Official Publish:
June 23rd, 2004
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.