Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 247541 (CVE-2008-5134)

Summary: Linux Kernel: <2.6.27.5 Buffer overflow in drivers/net/wireless/libertas/scan.c (CVE-2008-5134)
Product: Gentoo Security Reporter: stupendoussteve
Component: KernelAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: kernel
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=48735d8d8bd701b1e0cd3d49c21e5e385ddcb077
Whiteboard: [linux <2.6.25.19] [linux >=2.6.26 <2.6.26.7] [linux >=2.6.27 <2.6.27.5]
Package list:
Runtime testing required: ---

Description stupendoussteve 2008-11-19 04:50:54 UTC
Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in the Linux kernel before 2.6.27.5 allows remote attackers to have an unknown impact via an "invalid beacon/probe response."

Red: http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=48735d8d8bd701b1e0cd3d49c21e5e385ddcb077
Comment 1 Gordon Malm (RETIRED) gentoo-dev 2008-11-19 09:18:40 UTC
Fixed in hardened-sources 2.6.25-r10, 2.6.26-r6, and 2.6.27-r1.