7.2
CVSSv2

CVE-2008-5744

Published: 26/12/2008 Updated: 08/08/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Array index error in the dahdi/tor2.c driver in Zaptel (aka DAHDI) 1.4.11 and previous versions allows local users in the dialout group to overwrite an integer value in kernel memory by writing to /dev/zap/ctl, related to an incorrect tor2 patch for CVE-2008-5396 that uses the wrong variable in a range check against the value of lc->sync.

Vulnerable Product Search on Vulmon Subscribe to Product

asterisk zaptel

asterisk zaptel 1.4

asterisk zaptel 1.2

asterisk zaptel 1.2.27