CVE-2009-0269
published 2009-01-26CVE-2009-0269: fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption)…
PriorityP415medium4.9CVSS 2.0
AVLACLAuNCNINAC
EPSS
0.50%
40.2th percentile
fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| linux | linux_kernel | < 2.6.28.1 | 2.6.28.1 |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| vmware | esxi | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_vcenter_server | — | — |
| vmware | vmware_vsphere | — | — |
| vmware | vmware_workstation | — | — |
CVSS provenance
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
vendor_redhat4.9MEDIUM
vendor_ubuntu4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-g553-6vg2-rpm6: fs/ecryptfs/inode
ghsa_unreviewed·2022-05-02
CVE-2009-0269 [MEDIUM] CWE-787 GHSA-g553-6vg2-rpm6: fs/ecryptfs/inode
fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.
VMware
VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
vendor_vmware·2009-11-20·CVSS 5.0
CVE-2007-2052 [MEDIUM] VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
VMSA-2009-0016: VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
a. JRE Security Update JRE update to version 1.5.0_20, which addresses multiple security issues that existed in earlier releases of JRE. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_18: CVE-2009-1093, CVE-2009-1094, CVE-2009-1095, CVE-2009-1096, CVE-2009-1097, CVE-2009-1098, CVE-2009-1099, CVE-2009-1100, CVE-2009-1101, CVE-2009-1102, CVE-2009-1103, CVE-2009-1104, CVE-2009-1105, CVE-2009-1106, and CVE-2009-1107. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_20: CVE-2009-
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2009-04-06·CVSS 4.0
CVE-2008-4307 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
NFS did not correctly handle races between fcntl and interrupts. A local
attacker on an NFS mount could consume unlimited kernel memory, leading to
a denial of service. Ubuntu 8.10 was not affected. (CVE-2008-4307)
Sparc syscalls did not correctly check mmap regions. A local attacker
could cause a system panic, leading to a denial of service. Ubuntu 8.10
was not affected. (CVE-2008-6107)
In certain situations, cloned processes were able to send signals to parent
processes, crossing privilege boundaries. A local attacker could send
arbitrary signals to parent processes, leading to a denial of service.
(CVE-2009-0028)
The kernel keyring did not free memory correctly. A local attacker could
consume unlimited kernel
Red Hat
kernel: ecryptfs readlink flaw
vendor_redhat·2008-12-22·CVSS 4.9
CVE-2009-0269 [MEDIUM] kernel: ecryptfs readlink flaw
kernel: ecryptfs readlink flaw
fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2009-0398 gstreamer-plugins: Array index error while parsing malformed QuickTime media files
bugzilla·2009-02-03·CVSS 9.3
CVE-2009-0398 [CRITICAL] CVE-2009-0398 gstreamer-plugins: Array index error while parsing malformed QuickTime media files
CVE-2009-0398 gstreamer-plugins: Array index error while parsing malformed QuickTime media files
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-0398 to
the following vulnerability:
Array index error in the gst_qtp_trak_handler function in
gst/qtdemux/qtdemux.c in GStreamer Plug-ins (aka gstreamer-plugins)
0.6.0 allows remote attackers to have an unknown impact via a crafted
QuickTime media file.
References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0398
http://www.openwall.com/lists/oss-security/2009/01/29/3
Discussion:
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2009-0269.html
Bugzilla
CVE-2009-0269 kernel: ecryptfs readlink flaw
bugzilla·2009-01-26·CVSS 4.9
CVE-2009-0269 [MEDIUM] CVE-2009-0269 kernel: ecryptfs readlink flaw
CVE-2009-0269 kernel: ecryptfs readlink flaw
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-0269 to the following vulnerability:
fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.
Hyperlink:https://lists.launchpad.net/ecryptfs-devel/msg00011.html
Hyperlink:https://lists.launchpad.net/ecryptfs-devel/msg00010.html
Hyperlink:http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=a17d5232de7b53d34229de79ec22f4bb04adb7e4
Discussion:
So based on a quick technical first pass on the affected code:
CWE
Out-of-bounds Write
mitre_cwe
CWE-787 Out-of-bounds Write
CWE-787: Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
Modes of Introduction:
Phase: Implementation
Common Consequences:
Scope: Integrity. Impact: Modify Memory, Execute Unauthorized Code or Commands. Write operations could cause memory corruption. In some cases, an adversary can modify control data such as return addresses in order to execute unexpected code.
Scope: Availability. Impact: DoS: Crash, Exit, or Restart. Attempting to access out-of-range, invalid, or unauthorized memory could cause the product to crash.
Scope: Other. Impact: Unexpected State. Subsequent write operations can produce undefined or unexpected results.
Detection Methods:
Automated Static Analysis: This weakness can often be detected using automated s
CWE
Improper Restriction of Operations within the Bounds of a Memory Buffer
mitre_cwe
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
Background: Certain languages allow direct addressing of memory locations and do not automatically ensure that these locations are valid for the memory buffer that is being referenced.
Modes of Introduction:
Phase: Implementation
Common Consequences:
Scope: Integrity, Confidentiality, Availability. Impact: Execute Unauthorized Code or Commands, Modify Memory. If the memory accessible by the attacker can be effec
http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=a17d5232de7b53d34229de79ec22f4bb04adb7e4http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.htmlhttp://secunia.com/advisories/33758http://secunia.com/advisories/34394http://secunia.com/advisories/34502http://secunia.com/advisories/34981http://secunia.com/advisories/35390http://secunia.com/advisories/35394http://secunia.com/advisories/37471http://www.debian.org/security/2009/dsa-1749http://www.debian.org/security/2009/dsa-1787http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.1http://www.mandriva.com/security/advisories?name=MDVSA-2009:118http://www.redhat.com/support/errata/RHSA-2009-0326.htmlhttp://www.redhat.com/support/errata/RHSA-2009-0360.htmlhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/33412http://www.ubuntu.com/usn/usn-751-1http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2009/3316https://exchange.xforce.ibmcloud.com/vulnerabilities/48188https://lists.launchpad.net/ecryptfs-devel/msg00010.htmlhttps://lists.launchpad.net/ecryptfs-devel/msg00011.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8169https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8944http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git%3Ba=commit%3Bh=a17d5232de7b53d34229de79ec22f4bb04adb7e4http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.htmlhttp://secunia.com/advisories/33758http://secunia.com/advisories/34394http://secunia.com/advisories/34502http://secunia.com/advisories/34981http://secunia.com/advisories/35390http://secunia.com/advisories/35394http://secunia.com/advisories/37471http://www.debian.org/security/2009/dsa-1749http://www.debian.org/security/2009/dsa-1787http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.1http://www.mandriva.com/security/advisories?name=MDVSA-2009:118http://www.redhat.com/support/errata/RHSA-2009-0326.htmlhttp://www.redhat.com/support/errata/RHSA-2009-0360.htmlhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/33412http://www.ubuntu.com/usn/usn-751-1http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2009/3316https://exchange.xforce.ibmcloud.com/vulnerabilities/48188https://lists.launchpad.net/ecryptfs-devel/msg00010.htmlhttps://lists.launchpad.net/ecryptfs-devel/msg00011.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8169https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8944
2009-01-26
Published