Описание
Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | |
| feisty | DNE | |
| gutsy | DNE | |
| hardy | released | 2.6.24-19.36 |
| upstream | released | 2.6.26~rc2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | code does not exist |
| devel | DNE | |
| feisty | DNE | |
| gutsy | DNE | |
| hardy | DNE | |
| upstream | released | 2.6.26~rc2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | DNE | |
| feisty | released | 2.6.20-17.37 |
| gutsy | DNE | |
| hardy | DNE | |
| upstream | released | 2.6.26~rc2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | DNE | |
| feisty | DNE | |
| gutsy | released | 2.6.22-15.56 |
| hardy | DNE | |
| upstream | released | 2.6.26~rc2 |
Показывать по
EPSS
7.2 High
CVSS2
Связанные уязвимости
Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow.
Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow.
Integer overflow in the dccp_feat_change function in net/dccp/feat.c i ...
Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow.
ELSA-2008-0519: kernel security and bug fix update (IMPORTANT)
EPSS
7.2 High
CVSS2