CVE-2008-5396

Array index error in the (1) torisa.c and (2) dahdi/tor2.c drivers in Zaptel (aka DAHDI) 1.4.11 and earlier allows local users in the dialout group to overwrite an integer value in kernel memory by writing to /dev/zap/ctl, related to missing validation of the sync field associated with the ZT_SPANCONFIG ioctl.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 8%
VendorProductVersion
asteriskzaptel
𝑥
≤ 1.4.11
asteriskzaptel
1.2
asteriskzaptel
1.2.27
asteriskzaptel
1.4
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
not-affected
karmic
not-affected
jaunty
not-affected
intrepid
not-affected
hardy
not-affected
gutsy
dne
dapper
dne
linux-ec2
oneiric
dne
natty
dne
maverick
ignored
lucid
not-affected
karmic
not-affected
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
dne
linux-fsl-imx51
oneiric
dne
natty
dne
maverick
dne
lucid
not-affected
karmic
not-affected
hardy
dne
dapper
dne
linux-lts-backport-maverick
oneiric
dne
natty
dne
maverick
dne
lucid
not-affected
karmic
dne
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
dne
linux-lts-backport-natty
oneiric
dne
natty
dne
maverick
dne
lucid
not-affected
hardy
dne
linux-lts-backport-oneiric
oneiric
dne
natty
dne
maverick
dne
lucid
not-affected
hardy
dne
linux-mvl-dove
oneiric
dne
natty
dne
maverick
not-affected
lucid
not-affected
karmic
ignored
hardy
dne
dapper
dne
linux-source-2.6.15
oneiric
dne
natty
dne
maverick
dne
lucid
dne
karmic
dne
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
not-affected
linux-source-2.6.22
oneiric
dne
natty
dne
maverick
dne
lucid
dne
karmic
dne
jaunty
dne
intrepid
dne
hardy
dne
gutsy
not-affected
dapper
dne
linux-ti-omap4
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
dne
karmic
dne
hardy
dne
dapper
dne
zaptel
oneiric
dne
natty
dne
maverick
dne
lucid
dne
karmic
not-affected
jaunty
not-affected
intrepid
ignored
hardy
ignored
gutsy
ignored
dapper
ignored
Common Weakness Enumeration