PT-2006-7605 · Opensuse+2 · Usbvision-Kmp-Bigsmp+5
Published
1970-01-01
·
Updated
2018-10-30
·
CVE-2006-5751
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
usbvision-kmp-default (affected versions not specified)
usbvision-kmp-debug (affected versions not specified)
usbvision-kmp-bigsmp (affected versions not specified)
usbvision-kmp-xenpae (affected versions not specified)
Linux kernel versions prior to 2.6.18.4
Description
The issue involves multiple vulnerabilities in the usbvision-kmp packages of the openSUSE operating system, which can lead to disruption of protected information availability. These vulnerabilities can be exploited remotely. Additionally, an integer overflow in the get fdb entries function in the Linux kernel allows local users to execute arbitrary code via a large maxnum value in an ioctl request.
Recommendations
For usbvision-kmp-default, consider disabling the vulnerable package until a patch is available.
For usbvision-kmp-debug, restrict access to the package to minimize the risk of exploitation.
For usbvision-kmp-bigsmp, avoid using the package until the issue is resolved.
For usbvision-kmp-xenpae, consider temporarily disabling the package as a quick mitigation measure.
For Linux kernel versions prior to 2.6.18.4, update to version 2.6.18.4 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Red Hat
Usbvision-Kmp-Bigsmp
Usbvision-Kmp-Debug
Usbvision-Kmp-Default
Usbvision-Kmp-Xenpae