Name | CVE-2005-1263 |
Description | The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
kernel-source-2.4.27 | source | sarge | 2.4.27-10 | |||
kernel-source-2.6.8 | source | sarge | 2.6.8-16 | |||
linux-2.6 | source | (unstable) | (not affected) |
- linux-2.6 <not-affected> (Fixed before upload into archive; 2.6.12-rc4)
believed not to be exploitable in 2.6 after all, re Greg K-H