Your submission was sent successfully! Close

CVE-2008-1675

Published: 02 May 2008

The bdx_ioctl_priv function in the tehuti driver (tehuti.c) in Linux kernel 2.6.x before 2.6.25.1 does not properly check certain information related to register size, which has unspecified impact and local attack vectors, probably related to reading or writing kernel memory.

Priority

Low

Status

Package Release Status
linux
Launchpad, Ubuntu, Debian
Upstream
Released (2.6.24.6)
linux-source-2.6.15
Launchpad, Ubuntu, Debian
Upstream Not vulnerable
(driver does not exist)
linux-source-2.6.20
Launchpad, Ubuntu, Debian
Upstream Not vulnerable
(driver does not exist)
linux-source-2.6.22
Launchpad, Ubuntu, Debian
Upstream Not vulnerable
(driver does not exist)

Notes

AuthorNote
kees
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.24.y.git;a=commitdiff;h=a30678eb8ce99a7b4c716ad41c8c10a04d731127
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.24.y.git;a=commitdiff;h=f1b6098616f329d26199f278f228a7b27d36558d

References

Bugs