CVE-2008-5025

Linux Kernel < 2.6.28 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in the hfs_cat_find_brec function in fs/hfs/catalog.c in the Linux kernel before 2.6.28-rc1 allows attackers to cause a denial of service (memory corruption or system crash) via an hfs filesystem image with an invalid catalog namelength field, a related issue to CVE-2008-4933.

References (29)

... and 9 more

Scores

EPSS 0.0091
EPSS Percentile 75.5%

Classification

CWE
CWE-119
Status draft

Affected Products (50)

linux/linux_kernel < 2.6.28
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
... and 35 more

Timeline

Published Nov 17, 2008
Tracked Since Feb 18, 2026