PT-2006-7604 · Opensuse+1 · Usbvision-Kmp-Bigsmp+4
Al Viro
·
Published
1970-01-01
·
Updated
2023-02-13
·
CVE-2006-5749
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
usbvision-kmp-default (affected versions not specified)
usbvision-kmp-xenpae (affected versions not specified)
usbvision-kmp-bigsmp (affected versions not specified)
usbvision-kmp-xen (affected versions not specified)
usbvision-kmp-debug (affected versions not specified)
Linux kernel versions prior to 2.4.34-rc4
Description
The issue involves multiple vulnerabilities in the usbvision-kmp packages of the openSUSE operating system, which can lead to disruption of protected information availability. These vulnerabilities can be exploited remotely. Additionally, a function in the Linux kernel, specifically the
isdn ppp ccp reset alloc state function in drivers/isdn/isdn ppp.c, has an unknown attack vector that can cause a system crash due to not calling the init timer function for the ISDN PPP CCP reset state timer.Recommendations
For usbvision-kmp-default, consider disabling the package until a patch is available.
For usbvision-kmp-xenpae, consider disabling the package until a patch is available.
For usbvision-kmp-bigsmp, consider disabling the package until a patch is available.
For usbvision-kmp-xen, consider disabling the package until a patch is available.
For usbvision-kmp-debug, consider disabling the package until a patch is available.
For Linux kernel versions prior to 2.4.34-rc4, update to version 2.4.34-rc4 or later to resolve the issue with the
isdn ppp ccp reset alloc state function.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Usbvision-Kmp-Bigsmp
Usbvision-Kmp-Debug
Usbvision-Kmp-Default
Usbvision-Kmp-Xenpae