CVE-2004-1137: Critical severity linux linux kernel vulnerability
Multiple vulnerabilities in the IGMP functionality for Linux kernel 2.4.22 to 2.4.28, and 2.6.x to 2.6.9, allow local and remote attackers to cause a denial of service or execute arbitrary code via (1) the ipmcsource function, which decrements a counter to -1, or (2) the igmpmarksources function, which does not properly validate IGMP message parameters and performs an out-of-bounds read.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1137?
CVE-2004-1137 has a high severity level due to its potential to cause denial of service or execute arbitrary code.
How do I fix CVE-2004-1137?
To fix CVE-2004-1137, you should update the Linux kernel to a version that mitigates the vulnerabilities.
What systems are affected by CVE-2004-1137?
CVE-2004-1137 affects Linux kernel versions 2.4.22 to 2.4.28 and 2.6.x up to 2.6.9.
Can CVE-2004-1137 be exploited remotely?
Yes, CVE-2004-1137 can be exploited by remote attackers to execute arbitrary code.
What kind of attacks can CVE-2004-1137 facilitate?
CVE-2004-1137 can facilitate denial of service attacks or unauthorized code execution on affected systems.