CVE-2006-5174

N/A Unknown
Published: October 10, 2006 Modified: April 23, 2026
View on NVD

Description

The copy_from_user function in the uaccess code in Linux kernel 2.6 before 2.6.19-rc1, when running on s390, does not properly clear a kernel buffer, which allows local user space programs to read portions of kernel memory by "appending to a file from a bad address," which triggers a fault that prevents the unused memory from being cleared in the kernel buffer.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/22289
Source: cve@mitre.org
Patch Vendor Advisory
http://www.securityfocus.com/bid/20379
Source: cve@mitre.org
Patch
http://lkml.org/lkml/2006/11/5/46
Source: af854a3a-2127-422b-91ae-364da2661108
http://rhn.redhat.com/errata/RHSA-2007-0014.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/22289
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://secunia.com/advisories/22497
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/23064
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/23370
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/23395
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/23474
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/23997
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/24206
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1017090
Source: af854a3a-2127-422b-91ae-364da2661108
http://support.avaya.com/elmodocs2/security/ASA-2006-254.htm
Source: af854a3a-2127-422b-91ae-364da2661108
http://support.avaya.com/elmodocs2/security/ASA-2007-063.htm
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2006-0710.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/20379
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.us.debian.org/security/2006/dsa-1233
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.us.debian.org/security/2006/dsa-1237
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/3938
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/29378
Source: af854a3a-2127-422b-91ae-364da2661108

44 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
Exploitation Status
Not in CISA KEV

Affected Vendors

linux