VYPR
Unrated severityNVD Advisory· Published Apr 19, 2006· Updated Jun 16, 2026

CVE-2006-1524

CVE-2006-1524

Description

madvise_remove in Linux kernel 2.6.16 up to 2.6.16.6 does not follow file and mmap restrictions, which allows local users to bypass IPC permissions and replace portions of readonly tmpfs files with zeroes, aka the MADV_REMOVE vulnerability. NOTE: this description was originally written in a way that combined two separate issues. The mprotect issue now has a separate name, CVE-2006-2071.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • Linux/Kernel8 versions
    cpe:2.3:o:linux:linux_kernel:2.6.16:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:o:linux:linux_kernel:2.6.16:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.16.1:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.16.2:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.16.3:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.16.4:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.16.5:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.16.6:*:*:*:*:*:*:*
    • (no CPE)range: 2.6.16 - 2.6.16.6

Patches

Vulnerability mechanics

References

17

News mentions

0

No linked articles in our index yet.