Back to Database
Status published
Medium
CVE-2006-4538
Linux kernel 2.6.17 and earlier, when running on IA64 or...
Vulnerability Description
Linux kernel 2.6.17 and earlier, when running on IA64 or SPARC platforms, allows local users to cause a denial of service (crash) via a malformed ELF file that triggers memory maps that cross region boundaries.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-4538
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.novell.com/linux/security/advisories/2006_79_kernel.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10301
- http://www.redhat.com/support/errata/RHSA-2007-1049.html
- http://secunia.com/advisories/27913
- http://rhn.redhat.com/errata/RHSA-2007-0014.html
- http://support.avaya.com/elmodocs2/security/ASA-2007-063.htm
- http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.17.11
- http://www.us.debian.org/security/2006/dsa-1237
- http://secunia.com/advisories/33280
- http://secunia.com/advisories/24206
- http://secunia.com/advisories/23474
- http://secunia.com/advisories/21967
- http://www.ubuntu.com/usn/usn-347-1
- http://www.vupen.com/english/advisories/2006/3670
- http://www.us.debian.org/security/2006/dsa-1233
- http://secunia.com/advisories/23370
- http://secunia.com/advisories/21999
- http://www.kernel.org/git/?p=linux/kernel/git/stable/linux-2.6.17.y.git%3Ba=commit%3Bh=8833ebaa3f4325820fe3338ccf6fae04f6669254
- http://secunia.com/advisories/23997
- http://secunia.com/advisories/24482
- http://lkml.org/lkml/2006/9/4/116
- http://www.securityfocus.com/bid/19702
- http://www.redhat.com/support/errata/RHSA-2008-0787.html
- http://secunia.com/advisories/23395
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:060
More from linux
View All →CVE-2022-48619
An issue was discovered in drivers/input/input.c in the Linux kernel...
Unknown
0
CVE-2022-48502
An issue was discovered in the Linux kernel before 6.2....
High
7.1
CVE-2022-48425
In the Linux kernel through 6.2.7, fs/ntfs3/inode.c has an invalid...
Unknown
0
CVE-2022-48424
In the Linux kernel before 6.1.3, fs/ntfs3/inode.c does not validate...
Unknown
0
CVE-2022-48423
In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate...
Unknown
0
Affected Vendor
linux
View all reports →Affected Software
linux kernel
Vulnerable Versions:
2.6.0, 2.6.1, 2.6.2, 2.6.3, 2.6.4, 2.6.5, 2.6.6, 2.6.7, 2.6.8, 2.6.8.1, 2.6.8.1.5, 2.6.9, 2.6.10, 2.6.11, 2.6.11.1, 2.6.11.2, 2.6.11.3, 2.6.11.4, 2.6.11.5, 2.6.11.6, 2.6.11.7, 2.6.11.8, 2.6.11.9, 2.6.11.10, 2.6.11.11, 2.6.11.12, 2.6.11_rc1_bk6, 2.6.12, 2.6.12.1, 2.6.12.2, 2.6.12.3, 2.6.12.4, 2.6.12.5, 2.6.12.6, 2.6.13, 2.6.13.1, 2.6.13.2, 2.6.13.3, 2.6.13.4, 2.6.14, 2.6.14.1, 2.6.14.2, 2.6.14.3, 2.6.14.4, 2.6.14.5, 2.6.14.6, 2.6.14.7, 2.6.15, 2.6.15.1, 2.6.15.2, 2.6.15.3, 2.6.15.4, 2.6.15.5, 2.6.15.6, 2.6.15.7, 2.6.16, 2.6.16.1, 2.6.16.2, 2.6.16.3, 2.6.16.4, 2.6.16.5, 2.6.16.6, 2.6.16.7, 2.6.16.8, 2.6.16.9, 2.6.16.10, 2.6.16.11, 2.6.16.12, 2.6.16.13, 2.6.16.14, 2.6.16.15, 2.6.16.16, 2.6.16.17, 2.6.16.18, 2.6.16.19, 2.6.16.20, 2.6.16.21, 2.6.16.22, 2.6.16.23, 2.6.16.24, 2.6.16.27, 2.6.16_rc7, 2.6.17
Timeline
Official Publish:
September 5th, 2006
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.