Rapid7 VulnDB

SUSE Linux Security Advisory: SUSE-SR:2007:014

Back to Search

SUSE Linux Security Advisory: SUSE-SR:2007:014

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
05/23/2007
Created
07/25/2018
Added
12/12/2013
Modified
07/04/2017

Description

Array index error in the (1) ieee80211_ioctl_getwmmparams and (2) ieee80211_ioctl_setwmmparams functions in net80211/ieee80211_wireless.c in MadWifi before 0.9.3.1 allows local users to cause a denial of service (system crash), possibly obtain kernel memory contents, and possibly execute arbitrary code via a large negative array index value.

Solution(s)

  • suse-upgrade-avahi
  • suse-upgrade-avahi-compat-howl
  • suse-upgrade-avahi-compat-howl-devel
  • suse-upgrade-avahi-compat-mdnsresponder
  • suse-upgrade-avahi-compat-mdnsresponder-devel
  • suse-upgrade-avahi-devel
  • suse-upgrade-avahi-glib
  • suse-upgrade-avahi-mono
  • suse-upgrade-avahi-qt3
  • suse-upgrade-avahi-qt4
  • suse-upgrade-cups
  • suse-upgrade-cups-client
  • suse-upgrade-cups-devel
  • suse-upgrade-cups-libs
  • suse-upgrade-cups-libs-32bit
  • suse-upgrade-cups-libs-64bit
  • suse-upgrade-cups-libs-x86
  • suse-upgrade-libexif
  • suse-upgrade-libsmbclient
  • suse-upgrade-libsmbclient-32bit
  • suse-upgrade-libsmbclient-64bit
  • suse-upgrade-libsmbclient-devel
  • suse-upgrade-madwifi-kmp-bigsmp
  • suse-upgrade-madwifi-kmp-default
  • suse-upgrade-madwifi-kmp-smp
  • suse-upgrade-mozilla
  • suse-upgrade-mozilla-calendar
  • suse-upgrade-mozilla-cs
  • suse-upgrade-mozilla-deat
  • suse-upgrade-mozilla-devel
  • suse-upgrade-mozilla-dom-inspector
  • suse-upgrade-mozilla-hu
  • suse-upgrade-mozilla-irc
  • suse-upgrade-mozilla-mail
  • suse-upgrade-mozilla-venkman
  • suse-upgrade-samba
  • suse-upgrade-samba-client
  • suse-upgrade-samba-doc
  • suse-upgrade-samba-pdb
  • suse-upgrade-samba-python
  • suse-upgrade-samba-vscan
  • suse-upgrade-samba-winbind
  • suse-upgrade-suse-release

References

  • suse-upgrade-avahi
  • suse-upgrade-avahi-compat-howl
  • suse-upgrade-avahi-compat-howl-devel
  • suse-upgrade-avahi-compat-mdnsresponder
  • suse-upgrade-avahi-compat-mdnsresponder-devel
  • suse-upgrade-avahi-devel
  • suse-upgrade-avahi-glib
  • suse-upgrade-avahi-mono
  • suse-upgrade-avahi-qt3
  • suse-upgrade-avahi-qt4
  • suse-upgrade-cups
  • suse-upgrade-cups-client
  • suse-upgrade-cups-devel
  • suse-upgrade-cups-libs
  • suse-upgrade-cups-libs-32bit
  • suse-upgrade-cups-libs-64bit
  • suse-upgrade-cups-libs-x86
  • suse-upgrade-libexif
  • suse-upgrade-libsmbclient
  • suse-upgrade-libsmbclient-32bit
  • suse-upgrade-libsmbclient-64bit
  • suse-upgrade-libsmbclient-devel
  • suse-upgrade-madwifi-kmp-bigsmp
  • suse-upgrade-madwifi-kmp-default
  • suse-upgrade-madwifi-kmp-smp
  • suse-upgrade-mozilla
  • suse-upgrade-mozilla-calendar
  • suse-upgrade-mozilla-cs
  • suse-upgrade-mozilla-deat
  • suse-upgrade-mozilla-devel
  • suse-upgrade-mozilla-dom-inspector
  • suse-upgrade-mozilla-hu
  • suse-upgrade-mozilla-irc
  • suse-upgrade-mozilla-mail
  • suse-upgrade-mozilla-venkman
  • suse-upgrade-samba
  • suse-upgrade-samba-client
  • suse-upgrade-samba-doc
  • suse-upgrade-samba-pdb
  • suse-upgrade-samba-python
  • suse-upgrade-samba-vscan
  • suse-upgrade-samba-winbind
  • suse-upgrade-suse-release

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;