CVE-2008-4589

Heap-based buffer overflow in the tvtumin.sys kernel driver in Lenovo Rescue and Recovery 4.20, including 4.20.0511 and 4.20.0512, allows local users to execute arbitrary code via a long file name.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:lenovo:resuce_and_recovery:4.20:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:resuce_and_recovery:4.20.0511:*:*:*:*:*:*:*
cpe:2.3:a:lenovo:resuce_and_recovery:4.20.0512:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-10-15 22:45

Updated : 2024-02-04 17:33


NVD link : CVE-2008-4589

Mitre link : CVE-2008-4589

CVE.ORG link : CVE-2008-4589


JSON object : View

Products Affected

lenovo

  • resuce_and_recovery
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer