CVE-2008-5701
published 2008-12-22CVE-2008-5701: Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of…
PriorityP412medium4.7CVSS 2.0
AVLACMAuNCNINAC
EPSS
0.40%
32.6th percentile
Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of service (system crash) via an o32 syscall with a small syscall number, which leads to an attempted read operation outside the bounds of the syscall table.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| linux | linux_kernel | <= 2.6.28 | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.04.7MEDIUMAV:L/AC:M/Au:N/C:N/I:N/A:C
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
CVE-2008-5701: Array index error in arch/mips/kernel/scall64-o32
vendor_redhat·CVSS 4.7
CVE-2008-5701 [MEDIUM] CVE-2008-5701: Array index error in arch/mips/kernel/scall64-o32
Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of service (system crash) via an o32 syscall with a small syscall number, which leads to an attempted read operation outside the bounds of the syscall table.
Statement: Not vulnerable. This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 2.1, 3, 4, 5 or Red Hat Enterprise MRG. Red Hat does not provide support for the Linux kernel on the MIPS architecture.
GHSA
GHSA-c8rv-h2fj-xxxc: Array index error in arch/mips/kernel/scall64-o32
ghsa_unreviewed·2022-05-14
CVE-2008-5701 [MEDIUM] GHSA-c8rv-h2fj-xxxc: Array index error in arch/mips/kernel/scall64-o32
Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of service (system crash) via an o32 syscall with a small syscall number, which leads to an attempted read operation outside the bounds of the syscall table.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=e807f9574e37a3f202e677feaaad1b7c5d2c0db8http://openwall.com/lists/oss-security/2008/12/09/1http://secunia.com/advisories/33078http://secunia.com/advisories/34981http://secunia.com/advisories/35011http://www.debian.org/security/2009/dsa-1787http://www.debian.org/security/2009/dsa-1794http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.28-rc8http://www.securityfocus.com/bid/32716https://exchange.xforce.ibmcloud.com/vulnerabilities/47190http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=e807f9574e37a3f202e677feaaad1b7c5d2c0db8http://openwall.com/lists/oss-security/2008/12/09/1http://secunia.com/advisories/33078http://secunia.com/advisories/34981http://secunia.com/advisories/35011http://www.debian.org/security/2009/dsa-1787http://www.debian.org/security/2009/dsa-1794http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.28-rc8http://www.securityfocus.com/bid/32716https://exchange.xforce.ibmcloud.com/vulnerabilities/47190
2008-12-22
Published