PT-2006-7604 · Opensuse+1 · Usbvision-Kmp-Bigsmp+4

Al Viro

·

Published

1970-01-01

·

Updated

2023-02-13

·

CVE-2006-5749

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions usbvision-kmp-default (affected versions not specified) usbvision-kmp-xenpae (affected versions not specified) usbvision-kmp-bigsmp (affected versions not specified) usbvision-kmp-xen (affected versions not specified) usbvision-kmp-debug (affected versions not specified) Linux kernel versions prior to 2.4.34-rc4
Description The issue involves multiple vulnerabilities in the usbvision-kmp packages of the openSUSE operating system, which can lead to disruption of protected information availability. These vulnerabilities can be exploited remotely. Additionally, a function in the Linux kernel, specifically the isdn ppp ccp reset alloc state function in drivers/isdn/isdn ppp.c, has an unknown attack vector that can cause a system crash due to not calling the init timer function for the ISDN PPP CCP reset state timer.
Recommendations For usbvision-kmp-default, consider disabling the package until a patch is available. For usbvision-kmp-xenpae, consider disabling the package until a patch is available. For usbvision-kmp-bigsmp, consider disabling the package until a patch is available. For usbvision-kmp-xen, consider disabling the package until a patch is available. For usbvision-kmp-debug, consider disabling the package until a patch is available. For Linux kernel versions prior to 2.4.34-rc4, update to version 2.4.34-rc4 or later to resolve the issue with the isdn ppp ccp reset alloc state function.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04883
BDU:2015-04884
BDU:2015-04885
BDU:2015-04886
BDU:2015-04887
CVE-2006-5749

Affected Products

Linux Kernel
Usbvision-Kmp-Bigsmp
Usbvision-Kmp-Debug
Usbvision-Kmp-Default
Usbvision-Kmp-Xenpae