4.4
CVSSv2

CVE-2008-2137

Published: 29/05/2008 Updated: 30/10/2018
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The (1) sparc_mmap_check function in arch/sparc/kernel/sys_sparc.c and the (2) sparc64_mmap_check function in arch/sparc64/kernel/sys_sparc.c, in the Linux kernel 2.4 prior to 2.4.36.5 and 2.6 prior to 2.6.25.3, omit some virtual-address range (aka span) checks when the mmap MAP_FIXED bit is not set, which allows local users to cause a denial of service (panic) via unspecified mmap calls.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.22.11

linux linux kernel 2.6.22.12

linux linux kernel 2.6.25

linux linux kernel 2.6.25.1

linux linux kernel 2.6.11.12

linux linux kernel 2.6.11.4

linux linux kernel 2.6.12.12

linux linux kernel 2.6.12.2

linux linux kernel 2.6.13.2

linux linux kernel 2.6.13.3

linux linux kernel 2.6.14.5

linux linux kernel 2.6.15

linux linux kernel 2.6.16

linux linux kernel 2.6.16.13

linux linux kernel 2.6.16.27

linux linux kernel 2.6.17.14

linux linux kernel 2.6.17.2

linux linux kernel 2.6.18.1

linux linux kernel 2.6.18.3

linux linux kernel 2.6.20.11

linux linux kernel 2.6.20.13

linux linux kernel 2.6.20.9

linux linux kernel 2.6.21

linux linux kernel 2.6.22.4

linux linux kernel 2.6.22.5

linux linux kernel 2.6.23.4

linux linux kernel 2.6.23.5

linux linux kernel 2.6.6

linux linux kernel 2.6.7

debian debian linux 4.0

linux linux kernel 2.6.22.15

linux linux kernel 2.6.22.17

linux linux kernel 2.6.22.8

linux linux kernel 2.6.1

linux linux kernel 2.6.10

linux linux kernel 2.6.11.7

linux linux kernel 2.6.11.8

linux linux kernel 2.6.12.5

linux linux kernel 2.6.12.6

linux linux kernel 2.6.14.1

linux linux kernel 2.6.14.2

linux linux kernel 2.6.15.2

linux linux kernel 2.6.15.3

linux linux kernel 2.6.17.10

linux linux kernel 2.6.17.11

linux linux kernel 2.6.17.6

linux linux kernel 2.6.17.7

linux linux kernel 2.6.19.1

linux linux kernel 2.6.19.2

linux linux kernel 2.6.20.3

linux linux kernel 2.6.20.4

linux linux kernel 2.6.21.4

linux linux kernel 2.6.22

linux linux kernel 2.6.23

linux linux kernel 2.6.23.1

linux linux kernel 2.6.23.9

linux linux kernel 2.6.3

linux linux kernel 2.6.21.6

linux linux kernel 2.6.21.7

linux linux kernel 2.6.24.1

linux linux kernel 2.6.24.2

linux linux kernel 2.6.11

linux linux kernel 2.6.11.11

linux linux kernel 2.6.12

linux linux kernel 2.6.12.1

linux linux kernel 2.6.13

linux linux kernel 2.6.13.1

linux linux kernel 2.6.14.3

linux linux kernel 2.6.14.4

linux linux kernel 2.6.15.4

linux linux kernel 2.6.15.5

linux linux kernel 2.6.17.12

linux linux kernel 2.6.17.13

linux linux kernel 2.6.17.8

linux linux kernel 2.6.18

linux linux kernel 2.6.2

linux linux kernel 2.6.20

linux linux kernel 2.6.20.1

linux linux kernel 2.6.20.5

linux linux kernel 2.6.20.8

linux linux kernel 2.6.22.16

linux linux kernel 2.6.22.3

linux linux kernel 2.6.23.14

linux linux kernel 2.6.23.2

linux linux kernel 2.6.23.3

linux linux kernel 2.6.4

linux linux kernel 2.6.5

linux linux kernel 2.6.22.13

linux linux kernel 2.6.22.14

linux linux kernel 2.6.25.2

linux linux kernel 2.6.0

linux linux kernel 2.6.11.5

linux linux kernel 2.6.11.6

linux linux kernel 2.6.12.22

linux linux kernel 2.6.12.3

linux linux kernel 2.6.12.4

linux linux kernel 2.6.13.4

linux linux kernel 2.6.14

linux linux kernel 2.6.15.1

linux linux kernel 2.6.15.11

linux linux kernel 2.6.17

linux linux kernel 2.6.17.1

linux linux kernel 2.6.17.3

linux linux kernel 2.6.17.5

linux linux kernel 2.6.18.4

linux linux kernel 2.6.19

linux linux kernel 2.6.20.15

linux linux kernel 2.6.20.2

linux linux kernel 2.6.21.1

linux linux kernel 2.6.21.2

linux linux kernel 2.6.22.6

linux linux kernel 2.6.22.7

linux linux kernel 2.6.23.6

linux linux kernel 2.6.23.7

linux linux kernel 2.6.8

linux linux kernel 2.6.9

Vendor Advisories

Dirk Nehring discovered that the IPsec protocol stack did not correctly handle fragmented ESP packets A remote attacker could exploit this to crash the system, leading to a denial of service (CVE-2007-6282) ...
Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-6712 Johannes Bauer discovered an integer overflow condition in the hrtimer subsystem on 64-bit systems This can be exploited by local users to ...