Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of service (system crash) via an o32 syscall with a small syscall number, which leads to an attempted read operation outside the bounds of the syscall table.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://openwall.com/lists/oss-security/2008/12/09/1 | third party advisory mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/47190 | third party advisory vdb entry |
http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.28-rc8 | vendor advisory |
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=e807f9574e37a3f202e677feaaad1b7c5d2c0db8 | |
http://www.debian.org/security/2009/dsa-1794 | third party advisory vendor advisory |
http://secunia.com/advisories/33078 | third party advisory |
http://secunia.com/advisories/35011 | third party advisory |
http://secunia.com/advisories/34981 | third party advisory |
http://www.securityfocus.com/bid/32716 | third party advisory vdb entry |
http://www.debian.org/security/2009/dsa-1787 | third party advisory vendor advisory |