CVE-2008-5134
published 2008-11-18CVE-2008-5134: Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in the Linux kernel before 2.6.27.5 allows…
PriorityP345critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
5.26%
91.7th percentile
Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in the Linux kernel before 2.6.27.5 allows remote attackers to have an unknown impact via an "invalid beacon/probe response."
Affected
260 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux_kernel | <= 2.6.27.4 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2009-01-29·CVSS 4.9
CVE-2008-5134 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
Hugo Dias discovered that the ATM subsystem did not correctly manage socket
counts. A local attacker could exploit this to cause a system hang, leading
to a denial of service. (CVE-2008-5079)
It was discovered that the libertas wireless driver did not correctly
handle beacon and probe responses. A physically near-by attacker could
generate specially crafted wireless network traffic and cause a denial of
service. Ubuntu 6.06 was not affected. (CVE-2008-5134)
It was discovered that the inotify subsystem contained watch removal race
conditions. A local attacker could exploit this to crash the system,
leading to a denial of service. (CVE-2008-5182)
Dann Frazier discovered that in certain situations sendmsg did not
c
Red Hat
kernel: libertas: fix buffer overrun
vendor_redhat·2008-10-29·CVSS 10.0
CVE-2008-5134 [CRITICAL] kernel: libertas: fix buffer overrun
kernel: libertas: fix buffer overrun
Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in the Linux kernel before 2.6.27.5 allows remote attackers to have an unknown impact via an "invalid beacon/probe response."
Statement: This issue did not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5.
GHSA
GHSA-64m7-3v2x-c999: Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan
ghsa_unreviewed·2022-05-14
CVE-2008-5134 [HIGH] CWE-119 GHSA-64m7-3v2x-c999: Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan
Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in the Linux kernel before 2.6.27.5 allows remote attackers to have an unknown impact via an "invalid beacon/probe response."
No detection rules found.
No public exploits indexed.
http://article.gmane.org/gmane.linux.kernel.wireless.general/23049http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=48735d8d8bd701b1e0cd3d49c21e5e385ddcb077http://lists.opensuse.org/opensuse-security-announce/2009-01/msg00006.htmlhttp://openwall.com/lists/oss-security/2008/11/11/2http://secunia.com/advisories/32998http://secunia.com/advisories/33641http://secunia.com/advisories/33706http://secunia.com/advisories/33854http://www.debian.org/security/2008/dsa-1681http://www.redhat.com/support/errata/RHSA-2009-0053.htmlhttp://www.securityfocus.com/bid/32484https://bugzilla.redhat.com/show_bug.cgi?id=470761https://usn.ubuntu.com/714-1/http://article.gmane.org/gmane.linux.kernel.wireless.general/23049http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=48735d8d8bd701b1e0cd3d49c21e5e385ddcb077http://lists.opensuse.org/opensuse-security-announce/2009-01/msg00006.htmlhttp://openwall.com/lists/oss-security/2008/11/11/2http://secunia.com/advisories/32998http://secunia.com/advisories/33641http://secunia.com/advisories/33706http://secunia.com/advisories/33854http://www.debian.org/security/2008/dsa-1681http://www.redhat.com/support/errata/RHSA-2009-0053.htmlhttp://www.securityfocus.com/bid/32484https://bugzilla.redhat.com/show_bug.cgi?id=470761https://usn.ubuntu.com/714-1/
2008-11-18
Published