CVE-2008-2358
10.06.2008, 00:32
Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow.Enginsight
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 2.6.17 |
linux | linux_kernel | 2.6.18 |
linux | linux_kernel | 2.6.19 |
linux | linux_kernel | 2.6.20 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References