Security Advisory

CVE-2008-2358

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-06-10 00:00:00
Last updated 2024-08-07 08:58:01
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow.