Back
CVE-2005-1589
The pkt_ioctl function in the pktcdvd block device ioctl handler (pktcdvd.c) in Linux kernel 2.6.12-rc4 and earlier calls the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space and allows local users to cause a denial of service and possibly execute arbitrary code, a similar vulnerability to CVE-2005-1264.
Published: May 17, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | * |
GitHub Security Advisory GHSA-rgfg-567g-5mrr
The pkt_ioctl function in the pktcdvd block device ioctl handler (pktcdvd.c) in Linux kernel 2.6...
References (18)
- http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0045.html Exploit, Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0046.html
- http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0047.html
- http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.10
- http://marc.info/?l=linux-kernel&m=111630531515901&w=2
- http://secunia.com/advisories/17826
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:219
- http://www.securityfocus.com/bid/13651
- http://www.vupen.com/english/advisories/2005/0557
- http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0045.html Exploit, Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0046.html
- http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0047.html
- http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.10
- http://marc.info/?l=linux-kernel&m=111630531515901&w=2
- http://secunia.com/advisories/17826
Risk Scores
CVSS Score
7.2 / 10
EPSS Score
1.18%
Top 35% most likely to be exploited
Threat Score
29.2 / 100
Data Sources
NVD
EPSS
GitHub