Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T CPUs, which reports an exception in the SYSRET instead of the next instruction, which causes the kernel exception handler to run on the user stack with the wrong GS.
References
Link Providers
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.16.5 cve-icon cve-icon
http://lwn.net/Alerts/180820/ cve-icon cve-icon
http://secunia.com/advisories/19639 cve-icon cve-icon
http://secunia.com/advisories/19735 cve-icon cve-icon
http://secunia.com/advisories/20157 cve-icon cve-icon
http://secunia.com/advisories/20237 cve-icon cve-icon
http://secunia.com/advisories/20398 cve-icon cve-icon
http://secunia.com/advisories/20716 cve-icon cve-icon
http://secunia.com/advisories/20914 cve-icon cve-icon
http://secunia.com/advisories/21136 cve-icon cve-icon
http://secunia.com/advisories/21179 cve-icon cve-icon
http://secunia.com/advisories/21498 cve-icon cve-icon
http://secunia.com/advisories/21745 cve-icon cve-icon
http://secunia.com/advisories/21983 cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2006-161.htm cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2006-180.htm cve-icon cve-icon
http://www.debian.org/security/2006/dsa-1103 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2006:086 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2006:150 cve-icon cve-icon
http://www.novell.com/linux/security/advisories/2006-05-31.html cve-icon cve-icon
http://www.novell.com/linux/security/advisories/2006_42_kernel.html cve-icon cve-icon
http://www.novell.com/linux/security/advisories/2006_47_kernel.html cve-icon cve-icon
http://www.osvdb.org/24639 cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2006-0437.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2006-0493.html cve-icon cve-icon
http://www.securityfocus.com/bid/17541 cve-icon cve-icon
http://www.ubuntu.com/usn/usn-302-1 cve-icon cve-icon
http://www.vupen.com/english/advisories/2006/1390 cve-icon cve-icon
http://www.vupen.com/english/advisories/2006/1475 cve-icon cve-icon
http://www.vupen.com/english/advisories/2006/2554 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/25869 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2006-0744 cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9732 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2006-0744 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2006-04-18T10:00:00

Updated: 2024-08-07T16:48:55.956Z

Reserved: 2006-02-17T00:00:00

Link: CVE-2006-0744

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-04-18T10:02:00.000

Modified: 2018-10-30T16:26:20.390

Link: CVE-2006-0744

cve-icon Redhat

Severity : Important

Publid Date: 2006-03-09T00:00:00Z

Links: CVE-2006-0744 - Bugzilla