Linux kernel 2.6.10 and 2.6.11rc1-bk6 uses different size types for offset arguments to the proc_file_read and locks_read_proc functions, which leads to a heap-based buffer overflow when a signed comparison causes negative integers to be used in a positive context.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2005-02-24T05:00:00

Updated: 2024-08-07T21:13:54.218Z

Reserved: 2005-02-24T00:00:00

Link: CVE-2005-0529

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-05-02T04:00:00.000

Modified: 2024-11-20T23:55:20.577

Link: CVE-2005-0529

cve-icon Redhat

Severity : Moderate

Publid Date: 2005-02-15T00:00:00Z

Links: CVE-2005-0529 - Bugzilla