Bug 324791 (CVE-2004-2731) - CVE-2004-2731 kernel: interger overflows in Sbus PROM driver
Summary: CVE-2004-2731 kernel: interger overflows in Sbus PROM driver
Keywords:
Status: CLOSED NOTABUG
Alias: CVE-2004-2731
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL: http://nvd.nist.gov/nvd.cfm?cvename=C...
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2007-10-09 12:26 UTC by Lubomir Kundrak
Modified: 2021-11-12 19:36 UTC (History)
6 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2007-10-09 12:51:43 UTC
Embargoed:


Attachments (Terms of Use)

Description Lubomir Kundrak 2007-10-09 12:26:03 UTC
Common Vulnerabilities and Exposures assigned an identifier CVE-2004-2731 to the following vulnerability:

Multiple integer overflows in Sbus PROM driver (drivers/sbus/char/openprom.c) for the Linux kernel 2.4.x up to 2.4.27, 2.6.x up to 2.6.7, and possibly later versions, allow local users to execute arbitrary code by specifying (1) a small buffer size to the copyin_string function or (2) a negative buffer size to the copyin function.

References:

http://archives.neohapsis.com/archives/bugtraq/2004-06/0463.html

Comment 2 Lubomir Kundrak 2007-10-09 12:51:43 UTC
Not vulnerable. Linux kernel as shipped with with Red Hat Enterprise Linux 2.1,
3, 4 or 5 did not include the Sbus PROM module and therefore are not affected by
this issue.


Note You need to log in before you can comment on or make changes to this bug.