LOW · 2.1

CVE-2004-0554

Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and f...

Vulnerability Description

Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and frstor instructions, as originally demonstrated using a "crash.c" program.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
AvayaConverged Communications Server2.0
AvayaModular Messaging Message Storage Servers3400
GentooLinux1.4
LinuxLinux Kernel2.4.18
RedhatEnterprise Linux2.1
SuseSuse Linux7
AvayaIntuity AudixAll versions
SuseSuse Email Server3.1
SuseSuse Linux Admin-Cd For FirewallAll versions
SuseSuse Linux Connectivity ServerAll versions
SuseSuse Linux Database ServerAll versions
SuseSuse Linux Firewall CdAll versions
SuseSuse Linux Office ServerAll versions
SuseSuse Office ServerAll versions
AvayaS8300r2.0.0
AvayaS8500r2.0.0
AvayaS8700r2.0.0
ConectivaLinux8.0

References

FAQ

What is CVE-2004-0554?

CVE-2004-0554 is a vulnerability with a CVSS score of 2.1 (LOW). Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and f...

How severe is CVE-2004-0554?

CVE-2004-0554 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-0554?

Check the references section above for vendor advisories and patch information. Affected products include: Avaya Converged Communications Server, Avaya Modular Messaging Message Storage Server, Gentoo Linux, Linux Linux Kernel, Redhat Enterprise Linux.