Description
The bdx_ioctl_priv function in the tehuti driver (tehuti.c) in Linux kernel 2.6.x before 2.6.25.1 does not properly check certain information related to register size, which has unspecified impact and local attack vectors, probably related to reading or writing kernel memory.
References (21)
Core 21
Core References
Vendor Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2008/1406/references
Third Party Advisory x_refsource_confirm
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0157
Vendor Advisory vendor-advisory
x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2008:167
Vendor Advisory vendor-advisory
x_refsource_fedora
https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00232.html
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/491732/100/0/threaded
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/30515
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/491566/100/0/threaded
Vendor Advisory vendor-advisory
x_refsource_ubuntu
https://usn.ubuntu.com/614-1/
Vendor Advisory x_refsource_confirm
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.25.1
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/30044
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1019960
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/30017
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-2501
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/42132
Exploit mailing-list
x_refsource_mlist
http://marc.info/?l=linux-kernel&m=120949204619718&w=2
Exploit mailing-list
x_refsource_mlist
http://marc.info/?l=linux-kernel&m=120949582428998&w=2
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/29014
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/30260
Exploit mailing-list
x_refsource_mlist
http://marc.info/?l=linux-kernel&m=120949204519706&w=2
Third Party Advisory x_refsource_confirm
http://wiki.rpath.com/Advisories:rPSA-2008-0157
Vendor Advisory vendor-advisory
x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2008:109
Scores
EPSS
0.0053
EPSS Percentile
41.9%
Details
CWE
CWE-399
Status
published
Products (50)
linux/linux_kernel
2.6.0
linux/linux_kernel
2.6.1
linux/linux_kernel
2.6.2
linux/linux_kernel
2.6.10
linux/linux_kernel
2.6.11
linux/linux_kernel
2.6.11.1
linux/linux_kernel
2.6.11.2
linux/linux_kernel
2.6.11.3
linux/linux_kernel
2.6.11.4
linux/linux_kernel
2.6.11.5
... and 40 more
Published
May 02, 2008
Tracked Since
Feb 18, 2026