drivers/firmware/dell_rbu.c in the Linux kernel before 2.6.27.13, and 2.6.28.x before 2.6.28.2, allows local users to cause a denial of service (system crash) via a read system call that specifies zero bytes from the (1) image_type or (2) packet_size file in /sys/devices/platform/dell_rbu/.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linux_kernel | Linux | * | 2.6.27.13 (excluding) |
Linux_kernel | Linux | 2.6.28 (including) | 2.6.28.2 (excluding) |
MRG for RHEL-5 | RedHat | kernel-rt-0:2.6.24.7-108.el5rt | * |
Red Hat Enterprise Linux 4 | RedHat | kernel-0:2.6.9-78.0.17.EL | * |
Red Hat Enterprise Linux 5 | RedHat | kernel-0:2.6.18-128.1.6.el5 | * |
Linux | Ubuntu | hardy | * |
Linux | Ubuntu | intrepid | * |
Linux-source-2.6.15 | Ubuntu | dapper | * |
Linux-source-2.6.22 | Ubuntu | gutsy | * |