The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference of function pointers in (1) hamradio/6pack.c, (2) hamradio/mkiss.c, (3) irda/irtty-sir.c, (4) ppp_async.c, (5) ppp_synctty.c, (6) slip.c, (7) wan/x25_asy.c, and (8) wireless/strip.c in drivers/net/.
2008-07-09T00:41:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 2.6.25.10 | Yes |
Operating System | canonical | ubuntu_linux | 6.06 | Yes |
Operating System | canonical | ubuntu_linux | 7.04 | Yes |
Operating System | canonical | ubuntu_linux | 7.10 | Yes |
Operating System | canonical | ubuntu_linux | 8.04 | Yes |
Operating System | novell | linux_desktop | 9 | Yes |
Operating System | opensuse | opensuse | 10.3 | Yes |
Operating System | opensuse | opensuse | 11.0 | Yes |
Operating System | suse | suse_linux_enterprise_desktop | 10 | Yes |
Operating System | suse | suse_linux_enterprise_desktop | 10 | Yes |
Operating System | suse | suse_linux_enterprise_server | 10 | Yes |
Operating System | suse | suse_linux_enterprise_server | 10 | Yes |
Operating System | debian | debian_linux | 4.0 | Yes |
Application | avaya | communication_manager | ≥ 3.1 | Yes |
Application | avaya | expanded_meet-me_conferencing | * | Yes |
Application | avaya | intuity_audix_lx | 2.0 | Yes |
Application | avaya | meeting_exchange | 5.0 | Yes |
Application | avaya | message_networking | 3.1 | Yes |
Application | avaya | messaging_storage_server | 4.0 | Yes |
Application | avaya | proactive_contact | 4.0 | Yes |
Application | avaya | sip_enablement_services | - | Yes |
Application | avaya | sip_enablement_services | 4.0 | Yes |