CVE-2005-2459

The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointer dereference, a different vulnerability than CVE-2005-2458.
References
Link Resource
http://bugs.gentoo.org/show_bug.cgi?id=94584 Third Party Advisory
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5 Vendor Advisory
http://secunia.com/advisories/16355/ Permissions Required Third Party Advisory
http://secunia.com/advisories/16500 Permissions Required Third Party Advisory
http://secunia.com/advisories/17826 Permissions Required Third Party Advisory
http://secunia.com/advisories/17918 Permissions Required Third Party Advisory
http://secunia.com/advisories/18056 Permissions Required Third Party Advisory
http://secunia.com/advisories/18059 Permissions Required Third Party Advisory
http://www.debian.org/security/2005/dsa-921 Third Party Advisory
http://www.debian.org/security/2005/dsa-922 Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2005:219
http://www.mandriva.com/security/advisories?name=MDKSA-2005:220
http://www.novell.com/linux/security/advisories/2005_50_kernel.html Broken Link
http://www.securityfocus.com/archive/1/419522/100/0/threaded
http://www.securityfocus.com/bid/14720 Third Party Advisory VDB Entry
https://usn.ubuntu.com/169-1/
http://bugs.gentoo.org/show_bug.cgi?id=94584 Third Party Advisory
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5 Vendor Advisory
http://secunia.com/advisories/16355/ Permissions Required Third Party Advisory
http://secunia.com/advisories/16500 Permissions Required Third Party Advisory
http://secunia.com/advisories/17826 Permissions Required Third Party Advisory
http://secunia.com/advisories/17918 Permissions Required Third Party Advisory
http://secunia.com/advisories/18056 Permissions Required Third Party Advisory
http://secunia.com/advisories/18059 Permissions Required Third Party Advisory
http://www.debian.org/security/2005/dsa-921 Third Party Advisory
http://www.debian.org/security/2005/dsa-922 Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2005:219
http://www.mandriva.com/security/advisories?name=MDKSA-2005:220
http://www.novell.com/linux/security/advisories/2005_50_kernel.html Broken Link
http://www.securityfocus.com/archive/1/419522/100/0/threaded
http://www.securityfocus.com/bid/14720 Third Party Advisory VDB Entry
https://usn.ubuntu.com/169-1/
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:2.6.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test10:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test11:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test7:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test8:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.0:test9:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.1:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.1:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.3:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.4:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.5:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.6:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.6:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.7:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.7:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:386:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:686:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:686_smp:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:amd64:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:amd64_k8:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:amd64_k8_smp:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:amd64_xeon:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:k7:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:k7_smp:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:power3:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:power3_smp:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:power4:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:power4_smp:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:powerpc:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.8.1.5:*:powerpc_smp:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.9:2.6.20:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.10:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.10:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.3:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.4:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.5:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.6:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.7:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11.8:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.11_rc1_bk6:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.12:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.12:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6_test9_cvs:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:59

Type Values Removed Values Added
References () http://bugs.gentoo.org/show_bug.cgi?id=94584 - Third Party Advisory () http://bugs.gentoo.org/show_bug.cgi?id=94584 - Third Party Advisory
References () http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5 - Vendor Advisory () http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.12.5 - Vendor Advisory
References () http://secunia.com/advisories/16355/ - Permissions Required, Third Party Advisory () http://secunia.com/advisories/16355/ - Permissions Required, Third Party Advisory
References () http://secunia.com/advisories/16500 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/16500 - Permissions Required, Third Party Advisory
References () http://secunia.com/advisories/17826 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/17826 - Permissions Required, Third Party Advisory
References () http://secunia.com/advisories/17918 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/17918 - Permissions Required, Third Party Advisory
References () http://secunia.com/advisories/18056 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/18056 - Permissions Required, Third Party Advisory
References () http://secunia.com/advisories/18059 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/18059 - Permissions Required, Third Party Advisory
References () http://www.debian.org/security/2005/dsa-921 - Third Party Advisory () http://www.debian.org/security/2005/dsa-921 - Third Party Advisory
References () http://www.debian.org/security/2005/dsa-922 - Third Party Advisory () http://www.debian.org/security/2005/dsa-922 - Third Party Advisory
References () http://www.mandriva.com/security/advisories?name=MDKSA-2005:219 - () http://www.mandriva.com/security/advisories?name=MDKSA-2005:219 -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2005:220 - () http://www.mandriva.com/security/advisories?name=MDKSA-2005:220 -
References () http://www.novell.com/linux/security/advisories/2005_50_kernel.html - Broken Link () http://www.novell.com/linux/security/advisories/2005_50_kernel.html - Broken Link
References () http://www.securityfocus.com/archive/1/419522/100/0/threaded - () http://www.securityfocus.com/archive/1/419522/100/0/threaded -
References () http://www.securityfocus.com/bid/14720 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/14720 - Third Party Advisory, VDB Entry
References () https://usn.ubuntu.com/169-1/ - () https://usn.ubuntu.com/169-1/ -

Information

Published : 2005-08-23 04:00

Updated : 2024-11-20 23:59


NVD link : CVE-2005-2459

Mitre link : CVE-2005-2459

CVE.ORG link : CVE-2005-2459


JSON object : View

Products Affected

linux

  • linux_kernel

debian

  • debian_linux
CWE
CWE-476

NULL Pointer Dereference