drivers/firewire/ohci.c in the Linux kernel before 2.6.32-git9, when packet-per-buffer mode is used, allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unknown other impact via an unspecified ioctl associated with receiving an ISO packet that contains zero in the payload-length field.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:09
Type | Values Removed | Values Added |
---|---|---|
References | () http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=8c0c0cc2d9f4c523fde04bdfe41e4380dec8ee54Â - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00000.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00005.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00005.html - | |
References | () http://patchwork.kernel.org/patch/66747/Â - Patch | |
References | () http://secunia.com/advisories/38017Â - | |
References | () http://secunia.com/advisories/38276Â - | |
References | () http://support.avaya.com/css/P8/documents/100073666Â - | |
References | () http://www.debian.org/security/2010/dsa-2005Â - | |
References | () http://www.kernel.org/pub/linux/kernel/v2.6/snapshots/patch-2.6.32-git9.log - | |
References | () http://www.openwall.com/lists/oss-security/2009/12/15/1Â - Patch | |
References | () http://www.securityfocus.com/bid/37339Â - | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=547236Â - Patch | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7376Â - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9527Â - | |
References | () https://rhn.redhat.com/errata/RHSA-2010-0046.html - | |
References | () https://rhn.redhat.com/errata/RHSA-2010-0095.html - |
Information
Published : 2009-12-16 19:30
Updated : 2024-11-21 01:09
NVD link : CVE-2009-4138
Mitre link : CVE-2009-4138
CVE.ORG link : CVE-2009-4138
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-399
Resource Management Errors