Lucene search

K
cve[email protected]CVE-2004-0685
HistoryDec 23, 2004 - 5:00 a.m.

CVE-2004-0685

2004-12-2305:00:00
web.nvd.nist.gov
43
linux
2.4 kernel
usb drivers
copy_to_user function
sensitive information
memory vulnerability

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

5.3 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.3%

Certain USB drivers in the Linux 2.4 kernel use the copy_to_user function on uninitialized structures, which could allow local users to obtain sensitive information by reading memory that was not cleared from previous usage.

Affected configurations

NVD
Node
linuxlinux_kernelMatch2.2.0
OR
linuxlinux_kernelMatch2.2.1
OR
linuxlinux_kernelMatch2.2.2
OR
linuxlinux_kernelMatch2.2.3
OR
linuxlinux_kernelMatch2.2.4
OR
linuxlinux_kernelMatch2.2.5
OR
linuxlinux_kernelMatch2.2.6
OR
linuxlinux_kernelMatch2.2.7
OR
linuxlinux_kernelMatch2.2.8
OR
linuxlinux_kernelMatch2.2.9
OR
linuxlinux_kernelMatch2.2.10
OR
linuxlinux_kernelMatch2.2.11
OR
linuxlinux_kernelMatch2.2.12
OR
linuxlinux_kernelMatch2.2.13
OR
linuxlinux_kernelMatch2.2.14
OR
linuxlinux_kernelMatch2.2.15
OR
linuxlinux_kernelMatch2.2.15pre16
OR
linuxlinux_kernelMatch2.2.15_pre20
OR
linuxlinux_kernelMatch2.2.16
OR
linuxlinux_kernelMatch2.2.16pre6
OR
linuxlinux_kernelMatch2.2.17
OR
linuxlinux_kernelMatch2.2.18
OR
linuxlinux_kernelMatch2.2.19
OR
linuxlinux_kernelMatch2.2.20
OR
linuxlinux_kernelMatch2.2.21
OR
linuxlinux_kernelMatch2.2.22
OR
linuxlinux_kernelMatch2.2.23
OR
linuxlinux_kernelMatch2.2.24
OR
linuxlinux_kernelMatch2.2.25
OR
linuxlinux_kernelMatch2.3.0
OR
linuxlinux_kernelMatch2.3.99
OR
linuxlinux_kernelMatch2.3.99pre1
OR
linuxlinux_kernelMatch2.3.99pre2
OR
linuxlinux_kernelMatch2.3.99pre3
OR
linuxlinux_kernelMatch2.3.99pre4
OR
linuxlinux_kernelMatch2.3.99pre5
OR
linuxlinux_kernelMatch2.3.99pre6
OR
linuxlinux_kernelMatch2.3.99pre7
OR
linuxlinux_kernelMatch2.4.0
OR
linuxlinux_kernelMatch2.4.0test1
OR
linuxlinux_kernelMatch2.4.0test10
OR
linuxlinux_kernelMatch2.4.0test11
OR
linuxlinux_kernelMatch2.4.0test12
OR
linuxlinux_kernelMatch2.4.0test2
OR
linuxlinux_kernelMatch2.4.0test3
OR
linuxlinux_kernelMatch2.4.0test4
OR
linuxlinux_kernelMatch2.4.0test5
OR
linuxlinux_kernelMatch2.4.0test6
OR
linuxlinux_kernelMatch2.4.0test7
OR
linuxlinux_kernelMatch2.4.0test8
OR
linuxlinux_kernelMatch2.4.0test9
OR
linuxlinux_kernelMatch2.4.1
OR
linuxlinux_kernelMatch2.4.2
OR
linuxlinux_kernelMatch2.4.3
OR
linuxlinux_kernelMatch2.4.4
OR
linuxlinux_kernelMatch2.4.5
OR
linuxlinux_kernelMatch2.4.6
OR
linuxlinux_kernelMatch2.4.7
OR
linuxlinux_kernelMatch2.4.8
OR
linuxlinux_kernelMatch2.4.9
OR
linuxlinux_kernelMatch2.4.10
OR
linuxlinux_kernelMatch2.4.11
OR
linuxlinux_kernelMatch2.4.12
OR
linuxlinux_kernelMatch2.4.13
OR
linuxlinux_kernelMatch2.4.14
OR
linuxlinux_kernelMatch2.4.15
OR
linuxlinux_kernelMatch2.4.16
OR
linuxlinux_kernelMatch2.4.17
OR
linuxlinux_kernelMatch2.4.18
OR
linuxlinux_kernelMatch2.4.18x86
OR
linuxlinux_kernelMatch2.4.18pre1
OR
linuxlinux_kernelMatch2.4.18pre2
OR
linuxlinux_kernelMatch2.4.18pre3
OR
linuxlinux_kernelMatch2.4.18pre4
OR
linuxlinux_kernelMatch2.4.18pre5
OR
linuxlinux_kernelMatch2.4.18pre6
OR
linuxlinux_kernelMatch2.4.18pre7
OR
linuxlinux_kernelMatch2.4.18pre8
OR
linuxlinux_kernelMatch2.4.19
OR
linuxlinux_kernelMatch2.4.19pre1
OR
linuxlinux_kernelMatch2.4.19pre2
OR
linuxlinux_kernelMatch2.4.19pre3
OR
linuxlinux_kernelMatch2.4.19pre4
OR
linuxlinux_kernelMatch2.4.19pre5
OR
linuxlinux_kernelMatch2.4.19pre6
OR
linuxlinux_kernelMatch2.4.20
OR
linuxlinux_kernelMatch2.4.21
OR
linuxlinux_kernelMatch2.4.21pre1
OR
linuxlinux_kernelMatch2.4.21pre4
OR
linuxlinux_kernelMatch2.4.21pre7
OR
linuxlinux_kernelMatch2.4.22
OR
linuxlinux_kernelMatch2.4.23
OR
linuxlinux_kernelMatch2.4.23pre9
OR
linuxlinux_kernelMatch2.4.23_ow2
OR
linuxlinux_kernelMatch2.4.24
OR
linuxlinux_kernelMatch2.4.24_ow1
OR
linuxlinux_kernelMatch2.4.25
OR
linuxlinux_kernelMatch2.4.26
OR
linuxlinux_kernelMatch2.4.27pre1
OR
linuxlinux_kernelMatch2.4.27pre2
OR
linuxlinux_kernelMatch2.4.27pre3
OR
linuxlinux_kernelMatch2.4.27pre4
OR
linuxlinux_kernelMatch2.4.27pre5
OR
linuxlinux_kernelMatch2.5.0
OR
linuxlinux_kernelMatch2.5.1
OR
linuxlinux_kernelMatch2.5.2
OR
linuxlinux_kernelMatch2.5.3
OR
linuxlinux_kernelMatch2.5.4
OR
linuxlinux_kernelMatch2.5.5
OR
linuxlinux_kernelMatch2.5.6
OR
linuxlinux_kernelMatch2.5.7
OR
linuxlinux_kernelMatch2.5.8
OR
linuxlinux_kernelMatch2.5.9
OR
linuxlinux_kernelMatch2.5.10
OR
linuxlinux_kernelMatch2.5.11
OR
linuxlinux_kernelMatch2.5.12
OR
linuxlinux_kernelMatch2.5.13
OR
linuxlinux_kernelMatch2.5.14
OR
linuxlinux_kernelMatch2.5.15
OR
linuxlinux_kernelMatch2.5.16
OR
linuxlinux_kernelMatch2.5.17
OR
linuxlinux_kernelMatch2.5.18
OR
linuxlinux_kernelMatch2.5.19
OR
linuxlinux_kernelMatch2.5.20
OR
linuxlinux_kernelMatch2.5.21
OR
linuxlinux_kernelMatch2.5.22
OR
linuxlinux_kernelMatch2.5.23
OR
linuxlinux_kernelMatch2.5.24
OR
linuxlinux_kernelMatch2.5.25
OR
linuxlinux_kernelMatch2.5.26
OR
linuxlinux_kernelMatch2.5.27
OR
linuxlinux_kernelMatch2.5.28
OR
linuxlinux_kernelMatch2.5.29
OR
linuxlinux_kernelMatch2.5.30
OR
linuxlinux_kernelMatch2.5.31
OR
linuxlinux_kernelMatch2.5.32
OR
linuxlinux_kernelMatch2.5.33
OR
linuxlinux_kernelMatch2.5.34
OR
linuxlinux_kernelMatch2.5.35
OR
linuxlinux_kernelMatch2.5.36
OR
linuxlinux_kernelMatch2.5.37
OR
linuxlinux_kernelMatch2.5.38
OR
linuxlinux_kernelMatch2.5.39
OR
linuxlinux_kernelMatch2.5.40
OR
linuxlinux_kernelMatch2.5.41
OR
linuxlinux_kernelMatch2.5.42
OR
linuxlinux_kernelMatch2.5.43
OR
linuxlinux_kernelMatch2.5.44
OR
linuxlinux_kernelMatch2.5.45
OR
linuxlinux_kernelMatch2.5.46
OR
linuxlinux_kernelMatch2.5.47
OR
linuxlinux_kernelMatch2.5.48
OR
linuxlinux_kernelMatch2.5.49
OR
linuxlinux_kernelMatch2.5.50
OR
linuxlinux_kernelMatch2.5.51
OR
linuxlinux_kernelMatch2.5.52
OR
linuxlinux_kernelMatch2.5.53
OR
linuxlinux_kernelMatch2.5.54
OR
linuxlinux_kernelMatch2.5.55
OR
linuxlinux_kernelMatch2.5.56
OR
linuxlinux_kernelMatch2.5.57
OR
linuxlinux_kernelMatch2.5.58
OR
linuxlinux_kernelMatch2.5.59
OR
linuxlinux_kernelMatch2.5.60
OR
linuxlinux_kernelMatch2.5.61
OR
linuxlinux_kernelMatch2.5.62
OR
linuxlinux_kernelMatch2.5.63
OR
linuxlinux_kernelMatch2.5.64
OR
linuxlinux_kernelMatch2.5.65
OR
linuxlinux_kernelMatch2.5.66
OR
linuxlinux_kernelMatch2.5.67
OR
linuxlinux_kernelMatch2.5.68
OR
linuxlinux_kernelMatch2.5.69
OR
linuxlinux_kernelMatch2.6.0
OR
linuxlinux_kernelMatch2.6.0test1
OR
linuxlinux_kernelMatch2.6.0test10
OR
linuxlinux_kernelMatch2.6.0test11
OR
linuxlinux_kernelMatch2.6.0test2
OR
linuxlinux_kernelMatch2.6.0test3
OR
linuxlinux_kernelMatch2.6.0test4
OR
linuxlinux_kernelMatch2.6.0test5
OR
linuxlinux_kernelMatch2.6.0test6
OR
linuxlinux_kernelMatch2.6.0test7
OR
linuxlinux_kernelMatch2.6.0test8
OR
linuxlinux_kernelMatch2.6.0test9
OR
linuxlinux_kernelMatch2.6.1
OR
linuxlinux_kernelMatch2.6.1rc1
OR
linuxlinux_kernelMatch2.6.1rc2
OR
linuxlinux_kernelMatch2.6.2
OR
linuxlinux_kernelMatch2.6.3
OR
linuxlinux_kernelMatch2.6.4
OR
linuxlinux_kernelMatch2.6.5
OR
linuxlinux_kernelMatch2.6.6
OR
linuxlinux_kernelMatch2.6.6rc1
OR
linuxlinux_kernelMatch2.6.7
OR
linuxlinux_kernelMatch2.6.7rc1
OR
linuxlinux_kernelMatch2.6.8rc1
OR
linuxlinux_kernelMatch2.6.8rc2
OR
linuxlinux_kernelMatch2.6.8rc3
OR
linuxlinux_kernelMatch2.6_test9_cvs
OR
redhatenterprise_linuxMatch3.0advanced_servers
OR
redhatenterprise_linuxMatch3.0enterprise_server
OR
redhatenterprise_linuxMatch3.0workstation
OR
redhatenterprise_linux_desktopMatch3.0
OR
trustixsecure_linuxMatch2.0
OR
trustixsecure_linuxMatch2.1

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

5.3 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.3%