CVE-2004-0565

Published Dec 6, 2004

Last updated 8 days ago

Overview

Description
Floating point information leak in the context switch code for Linux 2.4.x only checks the MFH bit but does not verify the FPH owner, which allows local users to read register values of other processes by setting the MFH bit.
Source
cve@mitre.org
NVD status
Modified
Products
mandrake_multi_network_firewall, linux, linux_kernel, mandrake_linux, mandrake_linux_corporate_server, secure_linux

Risk scores

CVSS 2.0

Type
Primary
Base score
2.1
Impact score
2.9
Exploitability score
3.9
Vector string
AV:L/AC:L/Au:N/C:P/I:N/A:N

Weaknesses

nvd@nist.gov
NVD-CWE-Other

Social media

Hype score
Not currently trending

Configurations

References

Sources include official advisories and independent security research.