CVE-2009-2406
published 2009-07-31CVE-2009-2406: Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4 allows…
PriorityP422medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.50%
39.8th percentile
Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4 allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving a crafted eCryptfs file, related to not ensuring that the key signature length in a Tag 11 packet is compatible with the key signature buffer size.
Affected
263 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | kernel | — | — |
| linux | kernel | — | — |
| linux | linux_kernel | <= 2.6.30.3 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
vendor_ubuntu7.8HIGH
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
vendor_vmware·2009-11-20·CVSS 5.0
CVE-2007-2052 [MEDIUM] VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
VMSA-2009-0016: VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
a. JRE Security Update JRE update to version 1.5.0_20, which addresses multiple security issues that existed in earlier releases of JRE. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_18: CVE-2009-1093, CVE-2009-1094, CVE-2009-1095, CVE-2009-1096, CVE-2009-1097, CVE-2009-1098, CVE-2009-1099, CVE-2009-1100, CVE-2009-1101, CVE-2009-1102, CVE-2009-1103, CVE-2009-1104, CVE-2009-1105, CVE-2009-1106, and CVE-2009-1107. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_20: CVE-2009-
Red Hat
kernel: ecryptfs stack overflow in parse_tag_11_packet()
vendor_redhat·2009-07-28·CVSS 6.9
CVE-2009-2406 [MEDIUM] CWE-130 kernel: ecryptfs stack overflow in parse_tag_11_packet()
kernel: ecryptfs stack overflow in parse_tag_11_packet()
Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4 allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving a crafted eCryptfs file, related to not ensuring that the key signature length in a Tag 11 packet is compatible with the key signature buffer size.
Statement: The Linux kernel as shipped with Red Hat Enterprise Linux 3, 4, and Red Hat Enterprise MRG did not include support for eCryptfs, and therefore are not affected by this issue.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2009-07-28·CVSS 7.8
CVE-2009-1389 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
Michael Tokarev discovered that the RTL8169 network driver did not
correctly validate buffer sizes. A remote attacker on the local network
could send specially crafted traffic that would crash the system or
potentially grant elevated privileges. (CVE-2009-1389)
Julien Tinnes and Tavis Ormandy discovered that when executing setuid
processes the kernel did not clear certain personality flags. A local
attacker could exploit this to map the NULL memory page, causing other
vulnerabilities to become exploitable. Ubuntu 6.06 was not affected.
(CVE-2009-1895)
Matt T. Yourst discovered that KVM did not correctly validate the
page table root. A local attacker could exploit this to crash the
system, leading to a denial of s
GHSA
GHSA-86jh-hvhg-x8w9: Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore
ghsa_unreviewed·2022-05-02
CVE-2009-2406 [MEDIUM] CWE-119 GHSA-86jh-hvhg-x8w9: Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore
Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4 allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving a crafted eCryptfs file, related to not ensuring that the key signature length in a Tag 11 packet is compatible with the key signature buffer size.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6352a29305373ae6196491e6d4669f301e26492ehttp://lists.opensuse.org/opensuse-security-announce/2009-09/msg00001.htmlhttp://risesecurity.org/advisories/RISE-2009002.txthttp://secunia.com/advisories/35985http://secunia.com/advisories/36045http://secunia.com/advisories/36051http://secunia.com/advisories/36054http://secunia.com/advisories/36116http://secunia.com/advisories/36131http://secunia.com/advisories/37471http://www.debian.org/security/2009/dsa-1844http://www.debian.org/security/2009/dsa-1845http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.30.4http://www.mandriva.com/security/advisories?name=MDVSA-2011:029http://www.redhat.com/support/errata/RHSA-2009-1193.htmlhttp://www.securityfocus.com/archive/1/505334/100/0/threadedhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/35851http://www.securitytracker.com/id?1022663http://www.ubuntu.com/usn/usn-807-1http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2009/2041http://www.vupen.com/english/advisories/2009/3316https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10072https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8246https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00166.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg00223.htmlhttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6352a29305373ae6196491e6d4669f301e26492ehttp://lists.opensuse.org/opensuse-security-announce/2009-09/msg00001.htmlhttp://risesecurity.org/advisories/RISE-2009002.txthttp://secunia.com/advisories/35985http://secunia.com/advisories/36045http://secunia.com/advisories/36051http://secunia.com/advisories/36054http://secunia.com/advisories/36116http://secunia.com/advisories/36131http://secunia.com/advisories/37471http://www.debian.org/security/2009/dsa-1844http://www.debian.org/security/2009/dsa-1845http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.30.4http://www.mandriva.com/security/advisories?name=MDVSA-2011:029http://www.redhat.com/support/errata/RHSA-2009-1193.htmlhttp://www.securityfocus.com/archive/1/505334/100/0/threadedhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/35851http://www.securitytracker.com/id?1022663http://www.ubuntu.com/usn/usn-807-1http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2009/2041http://www.vupen.com/english/advisories/2009/3316https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10072https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8246https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00166.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg00223.html
2009-07-31
Published