HIGH · 7.2

CVE-2004-0495

Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.

Vulnerability Description

Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.

CVSS Score

7.2

HIGH

AV:L/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
AvayaConverged Communications Server2.0
AvayaModular Messaging Message Storage Servers3400
GentooLinux1.4
LinuxLinux Kernel2.4.18
RedhatEnterprise Linux2.1
SuseSuse Linux7
AvayaIntuity AudixAll versions
SuseSuse Email Server3.1
SuseSuse Linux Admin-Cd For FirewallAll versions
SuseSuse Linux Connectivity ServerAll versions
SuseSuse Linux Database ServerAll versions
SuseSuse Linux Firewall CdAll versions
SuseSuse Linux Office ServerAll versions
SuseSuse Office ServerAll versions
AvayaS8300r2.0.0
AvayaS8500r2.0.0
AvayaS8700r2.0.0
ConectivaLinux8.0

References

FAQ

What is CVE-2004-0495?

CVE-2004-0495 is a vulnerability with a CVSS score of 7.2 (HIGH). Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.

How severe is CVE-2004-0495?

CVE-2004-0495 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-0495?

Check the references section above for vendor advisories and patch information. Affected products include: Avaya Converged Communications Server, Avaya Modular Messaging Message Storage Server, Gentoo Linux, Linux Linux Kernel, Redhat Enterprise Linux.