The pci_register_iommu_region function in arch/sparc/kernel/pci_common.c in the Linux kernel before 2.6.29 on the sparc64 platform allows local users to cause a denial of service (system crash) by reading the /proc/iomem file, related to uninitialized pointers and the request_resource function.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/51196 | vdb entry |
http://secunia.com/advisories/35656 | third party advisory |
http://www.debian.org/security/2009/dsa-1844 | vendor advisory |
http://osvdb.org/54908 | vdb entry |
http://www.securityfocus.com/bid/35415 | vdb entry |
http://secunia.com/advisories/36051 | third party advisory |
http://www.ubuntu.com/usn/usn-793-1 | vendor advisory |
http://www.openwall.com/lists/oss-security/2009/06/03/3 | mailing list |
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.29 | |
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=192d7a4667c6d11d1a174ec4cad9a3c5d5f9043c |