CVE-2008-4395

Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux kernel 2.6 allow remote attackers to execute arbitrary code by sending packets over a local wireless network that specify long ESSIDs.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.3 UNKNOWN
ADJACENT_NETWORK
LOW
AV:A/AC:L/Au:N/C:C/I:C/A:C
canonicalCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 87%
VendorProductVersion
linuxlinux_kernel
2.6
ubuntulinux_kernel
𝑥
≤ 2.6.26
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
intrepid
Fixed 2.6.27-7.16
released
hardy
not-affected
gutsy
dne
feisty
dne
dapper
dne
linux-source-2.6.15
intrepid
dne
hardy
dne
gutsy
dne
feisty
dne
dapper
not-affected
linux-source-2.6.20
intrepid
dne
hardy
dne
gutsy
dne
feisty
not-affected
dapper
dne
linux-source-2.6.22
intrepid
dne
hardy
dne
gutsy
not-affected
feisty
dne
dapper
dne
linux-ubuntu-modules-2.6.22
intrepid
dne
hardy
dne
gutsy
Fixed 2.6.22-15.40
released
feisty
dne
dapper
dne
linux-ubuntu-modules-2.6.24
intrepid
dne
hardy
Fixed 2.6.24-21.33
released
gutsy
dne
feisty
dne
dapper
dne