Show plain JSON{"id": "CVE-2004-2607", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 2.1, "accessVector": "LOCAL", "vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:N", "authentication": "NONE", "integrityImpact": "NONE", "accessComplexity": "LOW", "availabilityImpact": "NONE", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "LOW", "obtainAllPrivilege": false, "exploitabilityScore": 3.9, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "published": "2004-12-31T05:00:00.000", "references": [{"url": "http://secunia.com/advisories/18977", "source": "cve@mitre.org"}, {"url": "http://secunia.com/advisories/19369", "source": "cve@mitre.org"}, {"url": "http://www.debian.org/security/2006/dsa-1018", "source": "cve@mitre.org"}, {"url": "http://www.mandriva.com/security/advisories?name=MDKSA-2006:072", "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/bid/16759", "source": "cve@mitre.org"}, {"url": "http://www.uwsg.iu.edu/hypermail/linux/kernel/0404.2/0313.html", "tags": ["Exploit"], "source": "cve@mitre.org"}, {"url": "http://www.uwsg.iu.edu/hypermail/linux/kernel/0404.2/0743.html", "source": "cve@mitre.org"}, {"url": "http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:044", "source": "cve@mitre.org"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}], "descriptions": [{"lang": "en", "value": "A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users to read portions of kernel memory via a large len argument, which is received as an int but cast to a short, which prevents a read loop from filling a buffer."}], "lastModified": "2010-04-02T04:50:44.267", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2E244C37-E366-482E-9173-9376D0839839"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11F96BB9-6509-4F1E-9590-E55EE8C6F992"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFAEE304-B9D4-4F1E-A2E0-9E5A4932096D"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12375EA9-EBFF-40B6-BCBC-E34BC3A6CDA3"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "718D4631-440E-4783-8966-B2A2D3EF89B3"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6111EDDB-065F-4AD1-925C-E0A3C1DE26AE"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8A2F7E7-0C51-43F2-BCEA-01FF738971D6"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "40F5FFBB-05C8-4D65-9FCF-11E67BEE86AD"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7015F57A-1E3B-42D2-9D12-F695078EFB21"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "467721EE-5130-46C5-BBB7-0F4878F3F171"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "171257E7-12C5-4283-88F7-FFE643995563"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.0:test9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0887E02F-9F36-41F0-9F75-060B8414D7BF"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:*:x86:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D77F8919-4064-4EA5-A948-76178EA21F83"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E7C423D-23DE-4C7B-A518-66F87E041925"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8EA1382E-71B0-4E65-A310-716A244F4FB1"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC955BD8-3ABB-4FDB-B37E-B1F0C47A5E0D"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2EBCA878-CCD0-4645-ACF6-12FB9C4B4A4D"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B4BEF62D-2BEF-4CF8-9559-8A6D9631B0EC"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "824BBD31-8F3B-4F05-981B-ABF662BBF5F2"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10F4CCC2-8AE5-4CFF-8DC4-126F02126E1F"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.18:pre8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "388A5C99-1F60-4C20-9AE5-6E73E5A3F819"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.19:pre1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5888F8D7-15C2-4435-BB3C-8674DFAF0089"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.19:pre2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29439AD0-EB8D-4675-A77A-6548FF27ADA3"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.19:pre3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F27AADF6-1605-47FC-8C4D-87827A578A90"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.19:pre4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B42F4080-A76F-4D17-85E2-CD2D2E4D0450"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.19:pre5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6968EF1D-7CC5-430D-866D-206F66486F63"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.19:pre6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "50E6F5C5-BF74-4C10-830A-F232D528D290"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.21:pre1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8EEBFBB4-CC06-40D2-8DE9-22E82DBEFADA"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.21:pre4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DCD8E4AE-FEF7-4CE2-B338-4F766921593F"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.21:pre7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "13A8B50A-73F6-4FCF-A81F-FB624FBA7143"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.22:pre10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E1D21AD5-C34F-4005-92F3-98F714DE98D8"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB45C3B2-0F5D-4AE2-AE00-E1D6501E8D92"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.23:pre9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8D27D843-2DA7-4481-857C-09FDC4FBD45C"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.23_ow2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCB93128-2743-4668-8C48-9B7282D4A672"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "040991B8-FB4B-480B-B53B-AA7A884F9F19"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.24_ow1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFA592BC-5846-4FC1-B2A7-13E622705DA8"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "59688C40-C92F-431E-ADD7-6782622862D3"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D813900D-DCF3-4F5D-9D90-13EDE2CBB3DA"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.27:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E4C7831-0296-4DFA-A4E9-F7B6B30FFB72"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.27:pre1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C5FE15BF-91C7-452A-BE1B-7EC9632421C2"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.27:pre2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15C1923C-D9C4-400D-9F0F-20B519EEC9C0"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.27:pre3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E51913F9-FC7D-450A-9A82-5084AA74A5B2"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.27:pre4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B62E02D5-9EEE-439B-A510-BEEE28A9F358"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.27:pre5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "02278C07-E649-427D-9E5C-F1738A01BCBD"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E120257D-346B-4BA6-A431-E6F820FBB5FB"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "361D407D-A4BE-491D-BC8E-32E78DC4A8F0"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.4.29:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F83D55B-3106-4907-A75F-A7EBF0EC6974"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "142BCD48-8387-4D0C-A052-44DD4144CBFF"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.1:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2A55C17-C530-4898-BC95-DE4D495F0D7C"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.1:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C14A949-E2B8-4100-8ED4-645CB996B08A"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB445E3E-CCBD-4737-BE30-841B9A79D558"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F5301E27-8021-467C-A9A2-AF2137EF0299"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "79787868-2D77-4B55-AD61-C2B357CCE047"}, {"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B3F27D3-8F1D-4576-A584-1E2059CC67B1"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}