Integer overflow in the hpsb_alloc_packet function (incorrectly reported as alloc_hpsb_packet) in IEEE 1394 (Firewire) driver 2.4 and 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via the functions (1) raw1394_write, (2) state_connected, (3) handle_remote_request, or (4) hpsb_make_writebpacket.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:49
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=108793792820740 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/16480 - |
Information
Published : 2004-08-06 04:00
Updated : 2024-11-20 23:49
NVD link : CVE-2004-0658
Mitre link : CVE-2004-0658
CVE.ORG link : CVE-2004-0658
JSON object : View
Products Affected
linux
- linux_kernel
CWE