CVE-2008-5396
Publication date 9 December 2008
Last updated 24 July 2024
Ubuntu priority
Description
Array index error in the (1) torisa.c and (2) dahdi/tor2.c drivers in Zaptel (aka DAHDI) 1.4.11 and earlier allows local users in the dialout group to overwrite an integer value in kernel memory by writing to /dev/zap/ctl, related to missing validation of the sync field associated with the ZT_SPANCONFIG ioctl.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| linux | ||
| linux-ec2 | ||
| linux-fsl-imx51 | ||
| linux-lts-backport-maverick | ||
| linux-lts-backport-natty | ||
| linux-lts-backport-oneiric | ||
| linux-mvl-dove | ||
| linux-source-2.6.15 | ||
| linux-source-2.6.22 | ||
| linux-ti-omap4 | ||
| zaptel | ||