Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-1524
Description:madvise_remove in Linux kernel 2.6.16 up to 2.6.16.6 does not follow file and mmap restrictions, which allows local users to bypass IPC permissions and replace portions of readonly tmpfs files with zeroes, aka the MADV_REMOVE vulnerability. NOTE: this description was originally written in a way that combined two separate issues. The mprotect issue now has a separate name, CVE-2006-2071.
Test IDs: 1.3.6.1.4.1.25623.1.0.56956  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-1524
BugTraq ID: 17587
http://www.securityfocus.com/bid/17587
Debian Security Information: DSA-1097 (Google Search)
http://www.debian.org/security/2006/dsa-1097
Debian Security Information: DSA-1103 (Google Search)
http://www.debian.org/security/2006/dsa-1103
http://lwn.net/Alerts/180820/
http://www.osvdb.org/24714
http://secunia.com/advisories/19657
http://secunia.com/advisories/19664
http://secunia.com/advisories/19735
http://secunia.com/advisories/20398
http://secunia.com/advisories/20671
http://secunia.com/advisories/20914
SuSE Security Announcement: SUSE-SA:2006:028 (Google Search)
http://www.novell.com/linux/security/advisories/2006-05-31.html
http://www.vupen.com/english/advisories/2006/1391
http://www.vupen.com/english/advisories/2006/1475
http://www.vupen.com/english/advisories/2006/2554
XForce ISS Database: linux-madvise-security-bypass(25870)
https://exchange.xforce.ibmcloud.com/vulnerabilities/25870




© 1998-2025 E-Soft Inc. All rights reserved.