CVE-2008-1673
published 2008-06-10CVE-2008-1673: The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the…
PriorityP344critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
7.09%
93.5th percentile
The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the gxsnmp package; does not properly validate length values during decoding of ASN.1 BER data, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) a length greater than the working buffer, which can lead to an unspecified overflow; (2) an oid length of zero, which can lead to an off-by-one error; or (3) an indefinite length for a primitive encoding.
Affected
173 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2008-07-15·CVSS 7.1
CVE-2008-2826 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
Dirk Nehring discovered that the IPsec protocol stack did not correctly
handle fragmented ESP packets. A remote attacker could exploit this to
crash the system, leading to a denial of service. (CVE-2007-6282)
Johannes Bauer discovered that the 64bit kernel did not correctly handle
hrtimer updates. A local attacker could request a large expiration value
and cause the system to hang, leading to a denial of service.
(CVE-2007-6712)
Tavis Ormandy discovered that the ia32 emulation under 64bit kernels did
not fully clear uninitialized data. A local attacker could read private
kernel memory, leading to a loss of privacy. (CVE-2008-0598)
Jan Kratochvil discovered that PTRACE did not correctly handle certain
calls when
Red Hat
kernel: possible buffer overflow in ASN.1 parsing routines
vendor_redhat·2008-06-06·CVSS 10.0
CVE-2008-1673 [CRITICAL] kernel: possible buffer overflow in ASN.1 parsing routines
kernel: possible buffer overflow in ASN.1 parsing routines
The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the gxsnmp package; does not properly validate length values during decoding of ASN.1 BER data, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) a length greater than the working buffer, which can lead to an unspecified overflow; (2) an oid length of zero, which can lead to an off-by-one error; or (3) an indefinite length for a primitive encoding.
This issue did not have a security consequence for the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 3, 4, and 5, and as such, was treated as a bug fix. This iss
GHSA
GHSA-cf3p-m8mq-9rx8: The asn1 implementation in (a) the Linux kernel 2
ghsa_unreviewed·2022-05-01
CVE-2008-1673 [HIGH] CWE-119 GHSA-cf3p-m8mq-9rx8: The asn1 implementation in (a) the Linux kernel 2
The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the gxsnmp package; does not properly validate length values during decoding of ASN.1 BER data, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) a length greater than the working buffer, which can lead to an unspecified overflow; (2) an oid length of zero, which can lead to an off-by-one error; or (3) an indefinite length for a primitive encoding.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.25.y.git%3Ba=commit%3Bh=33afb8403f361919aa5c8fe1d0a4f5ddbfbbea3chttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ddb2c43594f22843e9f3153da151deaba1a834c5http://kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.36.6http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.25.5http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-07/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-11/msg00001.htmlhttp://secunia.com/advisories/30000http://secunia.com/advisories/30580http://secunia.com/advisories/30644http://secunia.com/advisories/30658http://secunia.com/advisories/30982http://secunia.com/advisories/31107http://secunia.com/advisories/31836http://secunia.com/advisories/32103http://secunia.com/advisories/32104http://secunia.com/advisories/32370http://secunia.com/advisories/32759http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0189http://www.debian.org/security/2008/dsa-1592http://www.mandriva.com/security/advisories?name=MDVSA-2008:113http://www.mandriva.com/security/advisories?name=MDVSA-2008:174http://www.securityfocus.com/archive/1/493300/100/0/threadedhttp://www.securityfocus.com/bid/29589http://www.securitytracker.com/id?1020210http://www.ubuntu.com/usn/usn-625-1http://www.vupen.com/english/advisories/2008/1770https://bugzilla.redhat.com/show_bug.cgi?id=443962https://exchange.xforce.ibmcloud.com/vulnerabilities/42921https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00587.htmlhttp://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.25.y.git%3Ba=commit%3Bh=33afb8403f361919aa5c8fe1d0a4f5ddbfbbea3chttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ddb2c43594f22843e9f3153da151deaba1a834c5http://kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.36.6http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.25.5http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-07/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-11/msg00001.htmlhttp://secunia.com/advisories/30000http://secunia.com/advisories/30580http://secunia.com/advisories/30644http://secunia.com/advisories/30658http://secunia.com/advisories/30982http://secunia.com/advisories/31107http://secunia.com/advisories/31836http://secunia.com/advisories/32103http://secunia.com/advisories/32104http://secunia.com/advisories/32370http://secunia.com/advisories/32759http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0189http://www.debian.org/security/2008/dsa-1592http://www.mandriva.com/security/advisories?name=MDVSA-2008:113http://www.mandriva.com/security/advisories?name=MDVSA-2008:174http://www.securityfocus.com/archive/1/493300/100/0/threadedhttp://www.securityfocus.com/bid/29589http://www.securitytracker.com/id?1020210http://www.ubuntu.com/usn/usn-625-1http://www.vupen.com/english/advisories/2008/1770https://bugzilla.redhat.com/show_bug.cgi?id=443962https://exchange.xforce.ibmcloud.com/vulnerabilities/42921https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00587.html
2008-06-10
Published