CVE Vulnerabilities

CVE-2009-4410

Published: Dec 24, 2009 | Modified: Mar 19, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.9 MEDIUM
AV:L/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
4.9 MODERATE
AV:L/AC:L/Au:N/C:N/I:N/A:C
RedHat/V3
Ubuntu
LOW

The fuse_ioctl_copy_user function in the ioctl handler in fs/fuse/file.c in the Linux kernel 2.6.29-rc1 through 2.6.30.y uses the wrong variable in an argument to the kunmap function, which allows local users to cause a denial of service (panic) via unknown vectors.

Affected Software

Name Vendor Start Version End Version
Linux_kernel Linux 2.6.29 (including) 2.6.29 (including)
Linux_kernel Linux 2.6.29-git1 (including) 2.6.29-git1 (including)
Linux_kernel Linux 2.6.29-rc1 (including) 2.6.29-rc1 (including)
Linux_kernel Linux 2.6.29-rc2 (including) 2.6.29-rc2 (including)
Linux_kernel Linux 2.6.29-rc2_git7 (including) 2.6.29-rc2_git7 (including)
Linux_kernel Linux 2.6.29-rc8-kk (including) 2.6.29-rc8-kk (including)
Linux_kernel Linux 2.6.29.1 (including) 2.6.29.1 (including)
Linux_kernel Linux 2.6.29.2 (including) 2.6.29.2 (including)
Linux_kernel Linux 2.6.29.3 (including) 2.6.29.3 (including)
Linux_kernel Linux 2.6.29.4 (including) 2.6.29.4 (including)
Linux_kernel Linux 2.6.29.5 (including) 2.6.29.5 (including)
Linux_kernel Linux 2.6.29.6 (including) 2.6.29.6 (including)
Linux_kernel Linux 2.6.29.rc1 (including) 2.6.29.rc1 (including)
Linux_kernel Linux 2.6.29.rc2 (including) 2.6.29.rc2 (including)
Linux_kernel Linux 2.6.29.rc2-git1 (including) 2.6.29.rc2-git1 (including)
Linux_kernel Linux 2.6.30 (including) 2.6.30 (including)
Linux_kernel Linux 2.6.30-rc1 (including) 2.6.30-rc1 (including)
Linux_kernel Linux 2.6.30-rc2 (including) 2.6.30-rc2 (including)
Linux_kernel Linux 2.6.30-rc3 (including) 2.6.30-rc3 (including)
Linux_kernel Linux 2.6.30-rc4 (including) 2.6.30-rc4 (including)
Linux_kernel Linux 2.6.30-rc5 (including) 2.6.30-rc5 (including)
Linux_kernel Linux 2.6.30-rc6 (including) 2.6.30-rc6 (including)
Linux_kernel Linux 2.6.30-rc7-git6 (including) 2.6.30-rc7-git6 (including)
Linux_kernel Linux 2.6.30.1 (including) 2.6.30.1 (including)
Linux_kernel Linux 2.6.30.2 (including) 2.6.30.2 (including)
Linux_kernel Linux 2.6.30.3 (including) 2.6.30.3 (including)
Linux_kernel Linux 2.6.30.4 (including) 2.6.30.4 (including)
Linux_kernel Linux 2.6.30.5 (including) 2.6.30.5 (including)
Linux_kernel Linux 2.6.30.6 (including) 2.6.30.6 (including)
Linux_kernel Linux 2.6.30.7 (including) 2.6.30.7 (including)
Linux_kernel Linux 2.6.30.8 (including) 2.6.30.8 (including)
Linux_kernel Linux 2.6.30.9 (including) 2.6.30.9 (including)
Linux_kernel Linux 2.6.30.y (including) 2.6.30.y (including)
Linux Ubuntu upstream *
Linux-source-2.6.15 Ubuntu upstream *

References