6.9
CVE-2007-0005
- EPSS 0.62%
- Veröffentlicht 10.03.2007 00:19:00
- Zuletzt bearbeitet 16.06.2026 22:34:40
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
Multiple buffer overflows in the (1) read and (2) write handlers in the Omnikey CardMan 4040 driver in the Linux kernel before 2.6.21-rc3 allow local users to gain privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Omnikey.Aaitg ≫ Omnikey Cardman 4040
Linux ≫ Linux Kernel Updaterc2 Version <= 2.6.21
Linux ≫ Linux Kernel Version2.6.21
Linux ≫ Linux Kernel Version2.6.21 Updaterc1
Linux ≫ Linux Kernel Version2.6.21.1
Linux ≫ Linux Kernel Version2.6.21.2
Linux ≫ Linux Kernel Version2.6.21.3
Linux ≫ Linux Kernel Version2.6.21.4
Linux ≫ Linux Kernel Version2.6.21.5
Linux ≫ Linux Kernel Version2.6.21.6
Linux ≫ Linux Kernel Version2.6.21.7
Linux ≫ Linux Kernel Version2.6.21
Linux ≫ Linux Kernel Version2.6.21 Updaterc1
Linux ≫ Linux Kernel Version2.6.21.1
Linux ≫ Linux Kernel Version2.6.21.2
Linux ≫ Linux Kernel Version2.6.21.3
Linux ≫ Linux Kernel Version2.6.21.4
Linux ≫ Linux Kernel Version2.6.21.5
Linux ≫ Linux Kernel Version2.6.21.6
Linux ≫ Linux Kernel Version2.6.21.7
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.62% | 0.447 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.9 | 3.4 | 10 |
AV:L/AC:M/Au:N/C:C/I:C/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://secunia.com/advisories/25691
http://www.securityfocus.com/archive/1/471457
http://secunia.com/advisories/26139
http://www.ubuntu.com/usn/usn-489-1
http://secunia.com/advisories/24777
http://www.mandriva.com/security/advisories?name=MDKSA-2007:078
http://www.redhat.com/support/errata/RHSA-2007-0099.html
http://secunia.com/advisories/25078
http://www.debian.org/security/2007/dsa-1286
http://fedoranews.org/cms/node/2787
http://fedoranews.org/cms/node/2788
http://kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.21-rc3
http://secunia.com/advisories/24436
http://secunia.com/advisories/24518
http://secunia.com/advisories/24901
http://secunia.com/advisories/26133
http://www.osvdb.org/33023
http://www.securityfocus.com/archive/1/462300/100/0/threaded
http://www.securityfocus.com/bid/22870
http://www.ubuntu.com/usn/usn-486-1
http://www.vupen.com/english/advisories/2007/0872
https://exchange.xforce.ibmcloud.com/vulnerabilities/32880
https://issues.rpath.com/browse/RPL-1035
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11238