Executive Summary

Informations
Name CVE-2005-1369 First vendor Publication 2005-05-02
Vendor Cve Last vendor Modification 2018-10-19

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:L/Au:N/C:N/I:N/A:P)
Cvss Base Score 2.1 Attack Range Local
Cvss Impact Score 2.9 Attack Complexity Low
Cvss Expoit Score 3.9 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

The (1) it87 and (2) via686a drivers in I2C for Linux 2.6.x before 2.6.11.8, and 2.6.12 before 2.6.12-rc2, create the sysfs "alarms" file with write permissions, which allows local users to cause a denial of service (CPU consumption) by attempting to write to the file, which does not have an associated store function.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1369

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 17

Open Source Vulnerability Database (OSVDB)

Id Description
16065 Linux Kernel via686a Driver Insecure File Creation

The hardware monitoring drivers for the it87 and via686a chipsets in the Linux kernel contains a flaw that may allow a local denial of service. These drivers create a sysfs file called "alarms" incorrectly in R/W mode. The issue is triggered when a local user attempts to write to this file, and will result in loss of availability for the system by utilizing the CPU at 100% until the system is rebooted.
16064 Linux Kernel it87 Driver Insecure File Creation

The hardware monitoring drivers for the it87 and via686a chipsets in the Linux kernel contains a flaw that may allow a local denial of service. These drivers create a sysfs file called "alarms" incorrectly in R/W mode. The issue is triggered when a local user attempts to write to this file, and will result in loss of availability for the system by utilizing the CPU at 100% until the system is rebooted.

Nessus® Vulnerability Scanner

Date Description
2006-01-15 Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-131-1.nasl - Type : ACT_GATHER_INFO
2005-07-01 Name : The remote Mandrake Linux host is missing one or more security updates.
File : mandrake_MDKSA-2005-110.nasl - Type : ACT_GATHER_INFO
2005-05-28 Name : The remote Fedora Core host is missing a security update.
File : fedora_2005-392.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
CONFIRM http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.8
http://lkml.org/lkml/2005/4/20/159
FEDORA http://www.securityfocus.com/archive/1/427980/100/0/threaded

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
Date Informations
2024-02-02 01:03:03
  • Multiple Updates
2024-02-01 12:01:41
  • Multiple Updates
2023-09-05 12:02:52
  • Multiple Updates
2023-09-05 01:01:32
  • Multiple Updates
2023-09-02 12:02:54
  • Multiple Updates
2023-09-02 01:01:33
  • Multiple Updates
2023-08-12 12:03:28
  • Multiple Updates
2023-08-12 01:01:33
  • Multiple Updates
2023-08-11 12:03:01
  • Multiple Updates
2023-08-11 01:01:35
  • Multiple Updates
2023-08-06 12:02:48
  • Multiple Updates
2023-08-06 01:01:34
  • Multiple Updates
2023-08-04 12:02:52
  • Multiple Updates
2023-08-04 01:01:35
  • Multiple Updates
2023-07-14 12:02:50
  • Multiple Updates
2023-07-14 01:01:35
  • Multiple Updates
2023-03-29 01:02:57
  • Multiple Updates
2023-03-28 12:01:39
  • Multiple Updates
2022-10-11 12:02:32
  • Multiple Updates
2022-10-11 01:01:26
  • Multiple Updates
2021-05-04 12:02:56
  • Multiple Updates
2021-04-22 01:03:10
  • Multiple Updates
2020-05-23 00:16:32
  • Multiple Updates
2018-10-19 21:19:37
  • Multiple Updates
2016-04-26 13:28:20
  • Multiple Updates
2014-02-17 10:31:13
  • Multiple Updates
2013-05-11 11:25:35
  • Multiple Updates