CVE-2008-5396

EUVD-2008-5373
Array index error in the (1) torisa.c and (2) dahdi/tor2.c drivers in Zaptel (aka DAHDI) 1.4.11 and earlier allows local users in the dialout group to overwrite an integer value in kernel memory by writing to /dev/zap/ctl, related to missing validation of the sync field associated with the ZT_SPANCONFIG ioctl.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
Affected Products (NVD)
VendorProductVersion
asteriskzaptel
𝑥
≤ 1.4.11
asteriskzaptel
1.2
asteriskzaptel
1.2.27
asteriskzaptel
1.4
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
dapper
dne
gutsy
dne
hardy
not-affected
intrepid
not-affected
jaunty
not-affected
karmic
not-affected
lucid
not-affected
maverick
not-affected
natty
not-affected
oneiric
not-affected
linux-ec2
dapper
dne
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
not-affected
lucid
not-affected
maverick
ignored
natty
dne
oneiric
dne
linux-fsl-imx51
dapper
dne
hardy
dne
karmic
not-affected
lucid
not-affected
maverick
dne
natty
dne
oneiric
dne
linux-lts-backport-maverick
dapper
dne
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
lucid
not-affected
maverick
dne
natty
dne
oneiric
dne
linux-lts-backport-natty
hardy
dne
lucid
not-affected
maverick
dne
natty
dne
oneiric
dne
linux-lts-backport-oneiric
hardy
dne
lucid
not-affected
maverick
dne
natty
dne
oneiric
dne
linux-mvl-dove
dapper
dne
hardy
dne
karmic
ignored
lucid
not-affected
maverick
not-affected
natty
dne
oneiric
dne
linux-source-2.6.15
dapper
not-affected
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
lucid
dne
maverick
dne
natty
dne
oneiric
dne
linux-source-2.6.22
dapper
dne
gutsy
not-affected
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
lucid
dne
maverick
dne
natty
dne
oneiric
dne
linux-ti-omap4
dapper
dne
hardy
dne
karmic
dne
lucid
dne
maverick
not-affected
natty
not-affected
oneiric
not-affected
zaptel
dapper
ignored
gutsy
ignored
hardy
ignored
intrepid
ignored
jaunty
not-affected
karmic
not-affected
lucid
dne
maverick
dne
natty
dne
oneiric
dne
Common Weakness Enumeration