CVE-2008-4933
CVE-2008-4933
Buffer overflow in the hfsplus_find_cat function in fs/hfsplus/catalog.c in the Linux kernel before 2.6.28-rc1 allows attackers to cause a denial of service (memory corruption or system crash) via an hfsplus filesystem image with an invalid catalog namelength field, related to the hfsplus_cat_build_key_uni function.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=efc7ffcb4237f8cb9938909041c4ed38f6e1bf40http://kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.28-rc1http://lists.opensuse.org/opensuse-security-announce/2009-01/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-01/msg00010.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0264.htmlhttp://secunia.com/advisories/32510http://secunia.com/advisories/32918http://secunia.com/advisories/32998http://secunia.com/advisories/33180http://secunia.com/advisories/33556http://secunia.com/advisories/33641http://secunia.com/advisories/33704