First published: Sun May 02 2004(Updated: )
The arch_get_unmapped_area function in mmap.c in the PaX patches for Linux kernel 2.6, when Address Space Layout Randomization (ASLR) is enabled, allows local users to cause a denial of service (infinite loop) via unknown attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
The Pax Team Pax Linux | =2.6.5 | |
Gentoo Linux | =1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1983 has a moderate severity rating due to its potential to cause a denial of service.
To mitigate CVE-2004-1983, consider updating to a version of the Linux kernel that has addressed this vulnerability.
CVE-2004-1983 primarily affects systems running the PaX patches for Linux kernel 2.6.5 and Gentoo Linux 1.4.
CVE-2004-1983 is a local denial of service vulnerability that can be exploited when Address Space Layout Randomization (ASLR) is enabled.
CVE-2004-1983 requires local user access to exploit, thus it cannot be exploited remotely.