CVE-2008-1675

Linux kernel <2.6.25.1 - Local Attack

Title source: llm
STIX 2.1

Description

The bdx_ioctl_priv function in the tehuti driver (tehuti.c) in Linux kernel 2.6.x before 2.6.25.1 does not properly check certain information related to register size, which has unspecified impact and local attack vectors, probably related to reading or writing kernel memory.

References (21)

Core 21
Core References
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/1406/references
Third Party Advisory x_refsource_confirm
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0157
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2008:167
Vendor Advisory vendor-advisory x_refsource_fedora
https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00232.html
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/491732/100/0/threaded
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30515
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/491566/100/0/threaded
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/614-1/
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30044
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1019960
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30017
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-2501
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/42132
Exploit mailing-list x_refsource_mlist
http://marc.info/?l=linux-kernel&m=120949204619718&w=2
Exploit mailing-list x_refsource_mlist
http://marc.info/?l=linux-kernel&m=120949582428998&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/29014
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30260
Exploit mailing-list x_refsource_mlist
http://marc.info/?l=linux-kernel&m=120949204519706&w=2
Third Party Advisory x_refsource_confirm
http://wiki.rpath.com/Advisories:rPSA-2008-0157
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2008:109

Scores

EPSS 0.0053
EPSS Percentile 41.9%

Details

CWE
CWE-399
Status published
Products (50)
linux/linux_kernel 2.6.0
linux/linux_kernel 2.6.1
linux/linux_kernel 2.6.2
linux/linux_kernel 2.6.10
linux/linux_kernel 2.6.11
linux/linux_kernel 2.6.11.1
linux/linux_kernel 2.6.11.2
linux/linux_kernel 2.6.11.3
linux/linux_kernel 2.6.11.4
linux/linux_kernel 2.6.11.5
... and 40 more
Published May 02, 2008
Tracked Since Feb 18, 2026