peter bassill · operator
$ cve CVE-2005-1263 JSON

CVE-2005-1263 EXPLOIT

7.2
HIGH · CVSS 2.0 · EPSS 1.8% (pctl 78)

Patch early

A public exploit exists.

Description

The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow.

Scoring

CVSS7.2 (HIGH, v2.0)
VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS1.77% — more likely to be exploited than 78% of all CVEs
On CISA KEVno
Public exploityes
Published2005-05-11
Last modified2026-06-16

Affected (1)

VendorProduct
linuxlinux kernel

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD