Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 113321 - Kernel: Local DoS through USB devio driver (CVE-2005-3055)
Summary: Kernel: Local DoS through USB devio driver (CVE-2005-3055)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Kernel (show other bugs)
Hardware: All Linux
: High minor
Assignee: Gentoo Security
URL:
Whiteboard: [linux < 2.6.14]
Keywords:
Depends on:
Blocks:
 
Reported: 2005-11-23 02:00 UTC by Thierry Carrez (RETIRED)
Modified: 2009-05-03 15:51 UTC (History)
4 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Thierry Carrez (RETIRED) gentoo-dev 2005-11-23 02:00:12 UTC
In Ubuntu's USN-219-1:

Harald Welte discovered a Denial of Service vulnerability in the USB
devio driver. A local attacker could exploit this by sending an "USB
Request Block" (URB) and terminating the sending process before the
arrival of the answer, which left an invalid pointer and caused a
kernel crash. (CVE-2005-3055)
Comment 1 Tim Yamin (RETIRED) gentoo-dev 2006-01-02 15:29:18 UTC
Adding maintainers:

mips-sources-2.4.13: Kumba
rsbac-sources: kang
Comment 2 Tim Yamin (RETIRED) gentoo-dev 2006-03-11 09:31:19 UTC
No <2.6.14 kernels left in the tree, closing bug...