PT-2006-7604 · Opensuse+1 · Usbvision-Kmp-Bigsmp+4

Al Viro

·

Publicado

1970-01-01

·

Atualizado

2023-02-13

·

CVE-2006-5749

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions usbvision-kmp-default (affected versions not specified) usbvision-kmp-xenpae (affected versions not specified) usbvision-kmp-bigsmp (affected versions not specified) usbvision-kmp-xen (affected versions not specified) usbvision-kmp-debug (affected versions not specified) Linux kernel versions prior to 2.4.34-rc4
Description The issue involves multiple vulnerabilities in the usbvision-kmp packages of the openSUSE operating system, which can lead to disruption of protected information availability. These vulnerabilities can be exploited remotely. Additionally, a function in the Linux kernel, specifically the isdn ppp ccp reset alloc state function in drivers/isdn/isdn ppp.c, has an unknown attack vector that can cause a system crash due to not calling the init timer function for the ISDN PPP CCP reset state timer.
Recommendations For usbvision-kmp-default, consider disabling the package until a patch is available. For usbvision-kmp-xenpae, consider disabling the package until a patch is available. For usbvision-kmp-bigsmp, consider disabling the package until a patch is available. For usbvision-kmp-xen, consider disabling the package until a patch is available. For usbvision-kmp-debug, consider disabling the package until a patch is available. For Linux kernel versions prior to 2.4.34-rc4, update to version 2.4.34-rc4 or later to resolve the issue with the isdn ppp ccp reset alloc state function.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-04883
BDU:2015-04884
BDU:2015-04885
BDU:2015-04886
BDU:2015-04887
CVE-2006-5749

Produtos afetados

Linux Kernel
Usbvision-Kmp-Bigsmp
Usbvision-Kmp-Debug
Usbvision-Kmp-Default
Usbvision-Kmp-Xenpae