peter bassill · operator
$ cve CVE-2004-0077 JSON

CVE-2004-0077 EXPLOIT

7.2
HIGH · CVSS 2.0 · EPSS 2.4% (pctl 84)

Patch early

A public exploit exists.

Description

The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.

Scoring

CVSS7.2 (HIGH, v2.0)
VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS2.43% — more likely to be exploited than 84% of all CVEs
On CISA KEVno
Public exploityes
Published2004-03-03
Last modified2026-06-16

Affected (7)

VendorProduct
linuxlinux kernel
netwosixnetwosix linux
redhatbigmem kernel
redhatkernel
redhatkernel doc
redhatkernel source
trustixsecure linux

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD