CVE-2009-1265

Integer overflow in rose_sendmsg (sys/net/af_rose.c) in the Linux kernel 2.6.24.4, and other versions before 2.6.30-rc1, might allow remote attackers to obtain sensitive information via a large length value, which causes "garbage" memory to be sent.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 84%
VendorProductVersion
linuxlinux_kernel
2.6.24.4
linuxlinux_kernel
2.6.24.5
linuxlinux_kernel
2.6.24.6
linuxlinux_kernel
2.6.24.7
linuxlinux_kernel
2.6.25
linuxlinux_kernel
2.6.25.1
linuxlinux_kernel
2.6.25.2
linuxlinux_kernel
2.6.25.3
linuxlinux_kernel
2.6.25.4
linuxlinux_kernel
2.6.25.5
linuxlinux_kernel
2.6.25.6
linuxlinux_kernel
2.6.25.7
linuxlinux_kernel
2.6.25.8
linuxlinux_kernel
2.6.25.9
linuxlinux_kernel
2.6.25.10
linuxlinux_kernel
2.6.25.11
linuxlinux_kernel
2.6.25.12
linuxlinux_kernel
2.6.25.13
linuxlinux_kernel
2.6.25.14
linuxlinux_kernel
2.6.25.15
linuxlinux_kernel
2.6.25.16
linuxlinux_kernel
2.6.25.17
linuxlinux_kernel
2.6.25.18
linuxlinux_kernel
2.6.25.19
linuxlinux_kernel
2.6.25.20
linuxlinux_kernel
2.6.26
linuxlinux_kernel
2.6.26.1
linuxlinux_kernel
2.6.26.2
linuxlinux_kernel
2.6.26.3
linuxlinux_kernel
2.6.26.4
linuxlinux_kernel
2.6.26.5
linuxlinux_kernel
2.6.26.6
linuxlinux_kernel
2.6.26.7
linuxlinux_kernel
2.6.27
linuxlinux_kernel
2.6.27.1
linuxlinux_kernel
2.6.27.2
linuxlinux_kernel
2.6.27.3
linuxlinux_kernel
2.6.27.4
linuxlinux_kernel
2.6.27.5
linuxlinux_kernel
2.6.27.6
linuxlinux_kernel
2.6.27.7
linuxlinux_kernel
2.6.27.8
linuxlinux_kernel
2.6.27.9
linuxlinux_kernel
2.6.27.10
linuxlinux_kernel
2.6.27.11
linuxlinux_kernel
2.6.27.12
linuxlinux_kernel
2.6.27.13
linuxlinux_kernel
2.6.27.14
linuxlinux_kernel
2.6.27.15
linuxlinux_kernel
2.6.27.16
linuxlinux_kernel
2.6.27.17
linuxlinux_kernel
2.6.27.18
linuxlinux_kernel
2.6.27.19
linuxlinux_kernel
2.6.27.20
linuxlinux_kernel
2.6.27.21
linuxlinux_kernel
2.6.27.22
linuxlinux_kernel
2.6.27.23
linuxlinux_kernel
2.6.27.24
linuxlinux_kernel
2.6.27.25
linuxlinux_kernel
2.6.27.26
linuxlinux_kernel
2.6.27.27
linuxlinux_kernel
2.6.27.28
linuxlinux_kernel
2.6.27.29
linuxlinux_kernel
2.6.27.30
linuxlinux_kernel
2.6.27.31
linuxlinux_kernel
2.6.27.32
linuxlinux_kernel
2.6.27.33
linuxlinux_kernel
2.6.27.34
linuxlinux_kernel
2.6.27.35
linuxlinux_kernel
2.6.27.36
linuxlinux_kernel
2.6.27.37
linuxlinux_kernel
2.6.27.38
linuxlinux_kernel
2.6.27.39
linuxlinux_kernel
2.6.27.40
linuxlinux_kernel
2.6.27.41
linuxlinux_kernel
2.6.27.42
linuxlinux_kernel
2.6.27.43
linuxlinux_kernel
2.6.27.44
linuxlinux_kernel
2.6.27.45
linuxlinux_kernel
2.6.27.46
linuxlinux_kernel
2.6.27.47
linuxlinux_kernel
2.6.27.48
linuxlinux_kernel
2.6.27.49
linuxlinux_kernel
2.6.27.50
linuxlinux_kernel
2.6.27.51
linuxlinux_kernel
2.6.27.52
linuxlinux_kernel
2.6.27.53
linuxlinux_kernel
2.6.27.54
linuxlinux_kernel
2.6.27.55
linuxlinux_kernel
2.6.27.56
linuxlinux_kernel
2.6.27.57
linuxlinux_kernel
2.6.27.58
linuxlinux_kernel
2.6.27.59
linuxlinux_kernel
2.6.27.60
linuxlinux_kernel
2.6.27.61
linuxlinux_kernel
2.6.27.62
linuxlinux_kernel
2.6.28
linuxlinux_kernel
2.6.28.1
linuxlinux_kernel
2.6.28.2
linuxlinux_kernel
2.6.28.3
linuxlinux_kernel
2.6.28.4
linuxlinux_kernel
2.6.28.5
linuxlinux_kernel
2.6.28.6
linuxlinux_kernel
2.6.28.7
linuxlinux_kernel
2.6.28.8
linuxlinux_kernel
2.6.28.9
linuxlinux_kernel
2.6.28.10
linuxlinux_kernel
2.6.29
linuxlinux_kernel
2.6.29.1
linuxlinux_kernel
2.6.29.2
linuxlinux_kernel
2.6.29.3
linuxlinux_kernel
2.6.29.4
linuxlinux_kernel
2.6.29.5
linuxlinux_kernel
2.6.29.6
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
jaunty
Fixed 2.6.28-13.45
released
intrepid
Fixed 2.6.27-14.35
released
hardy
Fixed 2.6.24-24.55
released
gutsy
dne
dapper
dne
linux-source-2.6.15
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
Fixed 2.6.15-54.77
released
linux-source-2.6.22
jaunty
dne
intrepid
dne
hardy
dne
gutsy
ignored
dapper
dne
Common Weakness Enumeration
References