CVE-2005-0091 describes an unknown vulnerability within the Red Hat Enterprise Linux 4 kernel's 4GB/4GB split patch, specifically when the hugemem kernel is in use. This flaw allows local attackers to read and write to arbitrary kernel memory, leading to privilege escalation on affected Red Hat Enterprise Linux and Enterprise Linux Desktop systems. With a CVSS score of 7.2, this vulnerability is considered highly severe, requiring local access with low attack complexity and no authentication. A successful exploit grants complete confidentiality, integrity, and availability impact, as attackers can gain full control over the system. There is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, indicating a lack of widespread attention or known exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:advanced_server:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:enterprise_server:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:4.0:*:workstation:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_desktop:4.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.