/[kernel-sec]/retired/CVE-2005-3273
ViewVC logotype

Contents of /retired/CVE-2005-3273

Parent Directory Parent Directory | Revision Log Revision Log


Revision 548 - (show annotations) (download)
Thu Aug 17 00:24:25 2006 UTC (6 years, 9 months ago) by dannf
File size: 959 byte(s)
move retired to the top level hierarchy so people can easily checkout just the active issues
1 Candidate: CVE-2005-3273
2 References:
3 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3273
4 CONFIRM:http://linux.bkbits.net:8080/linux-2.6/diffs/net/rose/rose_route.c@1.16?nav=index.html|src/|src/net|src/net/rose|related/net/rose/rose_route.c|cset@1.2009.1.46
5 CONFIRM:http://lkml.org/lkml/2005/5/23/169
6 Description:
7 The rose_rt_ioctl function in rose_route.c for ROSE in Linux 2.6
8 kernels prior to 2.6.12 does not properly verify the ndigis argument
9 for a new route, which allows attackers to trigger array out-of-bounds
10 errors with a large number of digipeats.
11 Bugs:
12 upstream: released (2.6.12)
13 2.6.8-sarge-security: released (2.6.8-16sarge1) [net-rose-ndigis-verify.dpatch]
14 2.4.27-sarge-security: N/A
15 linux-2.6: released (2.6.12-1)
16 2.4.19-woody-security:
17 2.4.18-woody-security:
18 2.4.17-woody-security:
19 2.4.16-woody-security:
20 2.4.17-woody-security-hppa:
21 2.4.17-woody-security-ia64:
22 2.4.18-woody-security-hppa:

  ViewVC Help
Powered by ViewVC 1.1.5