CVE-2008-2812

NameCVE-2008-2812
DescriptionThe Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference of function pointers in (1) hamradio/6pack.c, (2) hamradio/mkiss.c, (3) irda/irtty-sir.c, (4) ppp_async.c, (5) ppp_synctty.c, (6) slip.c, (7) wan/x25_asy.c, and (8) wireless/strip.c in drivers/net/.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-1630-1

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
fai-kernelssourceetch1.17+etch.22etch2DSA-1630-1
linux-2.6sourceetch2.6.18.dfsg.1-22etch2DSA-1630-1
linux-2.6source(unstable)2.6.25-7
linux-2.6.24source(unstable)2.6.24-6~etchnhalf.4
user-mode-linuxsourceetch2.6.18-1um-2etch.22etch2DSA-1630-1

Search for package or bug name: Reporting problems