6.9

CVE-2007-0005

Multiple buffer overflows in the (1) read and (2) write handlers in the Omnikey CardMan 4040 driver in the Linux kernel before 2.6.21-rc3 allow local users to gain privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Omnikey.AaitgOmnikey Cardman 4040
   LinuxLinux Kernel Updaterc2 Version <= 2.6.21
   LinuxLinux Kernel Version2.6.21
   LinuxLinux Kernel Version2.6.21 Updaterc1
   LinuxLinux Kernel Version2.6.21.1
   LinuxLinux Kernel Version2.6.21.2
   LinuxLinux Kernel Version2.6.21.3
   LinuxLinux Kernel Version2.6.21.4
   LinuxLinux Kernel Version2.6.21.5
   LinuxLinux Kernel Version2.6.21.6
   LinuxLinux Kernel Version2.6.21.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.33% 0.555
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.