Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2005-4881


The netlink subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.13-rc1 does not initialize certain padding fields in structures, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors, related to the (1) tc_fill_qdisc, (2) tcf_fill_node, (3) neightbl_fill_info, (4) neightbl_fill_param_info, (5) neigh_fill_info, (6) rtnetlink_fill_ifinfo, (7) rtnetlink_fill_iwinfo, (8) vif_delete, (9) ipmr_destroy_unres, (10) ipmr_cache_alloc_unres, (11) ipmr_cache_resolve, (12) inet6_fill_ifinfo, (13) tca_get_fill, (14) tca_action_flush, (15) tcf_add_notify, (16) tc_dump_action, (17) cbq_dump_police, (18) __nlmsg_put, (19) __rta_fill, (20) __rta_reserve, (21) inet6_fill_prefix, (22) rsvp_dump, and (23) cbq_dump_ovl functions.


Published

2009-10-19T20:00:00.420

Last Modified

2025-04-09T00:30:58.490

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.9 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:N/A:N

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

3.9

Impact Score

6.9

Weaknesses
  • Type: Primary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System linux linux_kernel 2.4.1 Yes
Operating System linux linux_kernel 2.4.2 Yes
Operating System linux linux_kernel 2.4.3 Yes
Operating System linux linux_kernel 2.4.4 Yes
Operating System linux linux_kernel 2.4.5 Yes
Operating System linux linux_kernel 2.4.6 Yes
Operating System linux linux_kernel 2.4.7 Yes
Operating System linux linux_kernel 2.4.8 Yes
Operating System linux linux_kernel 2.4.9 Yes
Operating System linux linux_kernel 2.4.10 Yes
Operating System linux linux_kernel 2.4.11 Yes
Operating System linux linux_kernel 2.4.12 Yes
Operating System linux linux_kernel 2.4.13 Yes
Operating System linux linux_kernel 2.4.14 Yes
Operating System linux linux_kernel 2.4.15 Yes
Operating System linux linux_kernel 2.4.16 Yes
Operating System linux linux_kernel 2.4.17 Yes
Operating System linux linux_kernel 2.4.18 Yes
Operating System linux linux_kernel 2.4.19 Yes
Operating System linux linux_kernel 2.4.20 Yes
Operating System linux linux_kernel 2.4.21 Yes
Operating System linux linux_kernel 2.4.22 Yes
Operating System linux linux_kernel 2.4.23 Yes
Operating System linux linux_kernel 2.4.24 Yes
Operating System linux linux_kernel 2.4.25 Yes
Operating System linux linux_kernel 2.4.26 Yes
Operating System linux linux_kernel 2.4.27 Yes
Operating System linux linux_kernel 2.4.27 Yes
Operating System linux linux_kernel 2.4.27 Yes
Operating System linux linux_kernel 2.4.27 Yes
Operating System linux linux_kernel 2.4.27 Yes
Operating System linux linux_kernel 2.4.27 Yes
Operating System linux linux_kernel 2.4.28 Yes
Operating System linux linux_kernel 2.4.29 Yes
Operating System linux linux_kernel 2.4.30 Yes
Operating System linux linux_kernel 2.4.30 Yes
Operating System linux linux_kernel 2.4.30 Yes
Operating System linux linux_kernel 2.4.31 Yes
Operating System linux linux_kernel 2.4.32 Yes
Operating System linux linux_kernel 2.4.33 Yes
Operating System linux linux_kernel 2.4.33.1 Yes
Operating System linux linux_kernel 2.4.33.2 Yes
Operating System linux linux_kernel 2.4.33.3 Yes
Operating System linux linux_kernel 2.4.33.4 Yes
Operating System linux linux_kernel 2.4.33.5 Yes
Operating System linux linux_kernel 2.4.33.7 Yes
Operating System linux linux_kernel 2.4.34 Yes
Operating System linux linux_kernel 2.4.34.1 Yes
Operating System linux linux_kernel 2.4.34.2 Yes
Operating System linux linux_kernel 2.4.34.3 Yes
Operating System linux linux_kernel 2.4.34.4 Yes
Operating System linux linux_kernel 2.4.34.5 Yes
Operating System linux linux_kernel 2.4.34.6 Yes
Operating System linux linux_kernel 2.4.35.1 Yes
Operating System linux linux_kernel 2.4.35.2 Yes
Operating System linux linux_kernel 2.4.35.3 Yes
Operating System linux linux_kernel 2.4.35.4 Yes
Operating System linux linux_kernel 2.4.35.5 Yes
Operating System linux linux_kernel 2.4.36 Yes
Operating System linux linux_kernel 2.4.36.1 Yes
Operating System linux linux_kernel 2.4.36.2 Yes
Operating System linux linux_kernel 2.4.36.3 Yes
Operating System linux linux_kernel 2.4.36.4 Yes
Operating System linux linux_kernel 2.4.36.5 Yes
Operating System linux linux_kernel 2.4.36.6 Yes
Operating System linux linux_kernel 2.4.36.7 Yes
Operating System linux linux_kernel 2.4.36.8 Yes
Operating System linux linux_kernel 2.4.36.9 Yes
Operating System linux linux_kernel 2.4.37 Yes
Operating System linux linux_kernel 2.4.37.1 Yes
Operating System linux linux_kernel 2.4.37.2 Yes
Operating System linux linux_kernel 2.4.37.3 Yes
Operating System linux linux_kernel 2.4.37.4 Yes
Operating System linux linux_kernel 2.4.37.5 Yes
Operating System linux linux_kernel 2.6.0 Yes
Operating System linux linux_kernel 2.6.1 Yes
Operating System linux linux_kernel 2.6.10 Yes
Operating System linux linux_kernel 2.6.11 Yes
Operating System linux linux_kernel 2.6.11.1 Yes
Operating System linux linux_kernel 2.6.11.2 Yes
Operating System linux linux_kernel 2.6.11.3 Yes
Operating System linux linux_kernel 2.6.11.4 Yes
Operating System linux linux_kernel 2.6.11.5 Yes
Operating System linux linux_kernel 2.6.11.6 Yes
Operating System linux linux_kernel 2.6.11.7 Yes
Operating System linux linux_kernel 2.6.11.8 Yes
Operating System linux linux_kernel 2.6.11.9 Yes
Operating System linux linux_kernel 2.6.11.10 Yes
Operating System linux linux_kernel 2.6.11.11 Yes
Operating System linux linux_kernel 2.6.11.12 Yes
Operating System linux linux_kernel 2.6.12 Yes
Operating System linux linux_kernel 2.6.12.1 Yes
Operating System linux linux_kernel 2.6.12.2 Yes
Operating System linux linux_kernel 2.6.12.3 Yes
Operating System linux linux_kernel 2.6.12.4 Yes
Operating System linux linux_kernel 2.6.12.5 Yes
Operating System linux linux_kernel 2.6.12.6 Yes

References