7.8
CVSSv2

CVE-2009-1389

Published: 16/06/2009 Updated: 13/02/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 695
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Buffer overflow in the RTL8169 NIC driver (drivers/net/r8169.c) in the Linux kernel prior to 2.6.30 allows remote malicious users to cause a denial of service (kernel memory corruption and crash) via a long packet.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.20.6

linux linux kernel 2.6.28

linux linux kernel 2.6.8.1.5

linux linux kernel 2.6.0

linux linux kernel 2.6.4

linux linux kernel 2.6.17

linux linux kernel 2.6.20.9

linux linux kernel 2.6.18

linux linux kernel 2.6.29

linux linux kernel 2.6.23.4

linux linux kernel 2.6.22.15

linux linux kernel 2.6.16.16

linux linux kernel 2.6.20

linux linux kernel 2.6.18.7

linux linux kernel 2.6.17.12

linux linux kernel 2.6.16.39

linux linux kernel 2.6.27.3

linux linux kernel 2.6.29.3

linux linux kernel 2.6.21

linux linux kernel 2.6.16.9

linux linux kernel 2.6.12

linux linux kernel 2.6.17.9

linux linux kernel 2.6.12.12

linux linux kernel 2.6.19

linux linux kernel 2.6.14

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.15.3

linux linux kernel 2.6.11.10

linux linux kernel 2.6.10

linux linux kernel 2.6.13

linux linux kernel 2.6.1

linux linux kernel 2.6.16.43

linux linux kernel 2.6.16.6

linux linux kernel 2.6.16.8

linux linux kernel 2.6.16

linux linux kernel 2.6.20.13

linux linux kernel 2.6.22.4

linux linux kernel 2.6.7

linux linux kernel 2.6.14.7

linux linux kernel 2.6.3

linux linux kernel 2.6.17.2

linux linux kernel 2.6.15

linux linux kernel 2.6.13.3

linux linux kernel 2.6.11.8

linux linux kernel 2.6.16.34

linux linux kernel 2.6.27.21

linux linux kernel 2.6.11_rc1_bk6

linux linux kernel 2.6.22.21

linux linux kernel 2.6.23.7

linux linux kernel 2.6.17.8

linux linux kernel 2.6.14.4

linux linux kernel 2.2.6

linux linux kernel 2.6.17.4

linux linux kernel 2.6.16.18

linux linux kernel 2.6.17.14

linux linux kernel 2.6.27

linux linux kernel 2.6.16.45

linux linux kernel 2.6.22.12

linux linux kernel 2.6.14.3

linux linux kernel 2.6.24

linux linux kernel 2.6.18.3

linux linux kernel 2.6.16.37

linux linux kernel 2.6.30

linux linux kernel 2.6.11.6

linux linux kernel 2.6.16.48

linux linux kernel 2.6.11.11

linux linux kernel 2.6.16.13

linux linux kernel 2.6.21.6

linux linux kernel 2.6.22.1

linux linux kernel 2.6.9

linux linux kernel 2.6.16.4

linux linux kernel 2.6.17.3

linux linux kernel 2.6.22.6

linux linux kernel 2.6.20.5

linux linux kernel 2.6.22

linux linux kernel 2.6.28.4

linux linux kernel 2.6.16.15

linux linux kernel 2.6.27.20

linux linux kernel 2.6_test9_cvs

linux linux kernel 2.6.15.6

linux linux kernel 2.6.20.16

linux linux kernel 2.6.15.1

linux linux kernel 2.6.11.5

linux linux kernel 2.6.28.2

linux linux kernel 2.6.19.3

linux linux kernel 2.6.27.4

linux linux kernel 2.6.19.4

linux linux kernel 2.6.28.5

linux linux kernel 2.6.19.1

linux linux kernel 2.6.18.4

linux linux kernel 2.6.16.1

linux linux kernel 2.6.18.1

linux linux kernel 2.6.20.21

linux linux kernel 2.6.8

linux linux kernel 2.6.23.1

linux linux kernel 2.6.2

linux linux kernel 2.6.6

linux linux kernel 2.6.14.5

linux linux kernel 2.6.13.2

linux linux kernel 2.6.17.5

linux linux kernel 2.6.18.5

linux linux kernel 2.6.21.1

linux linux kernel 2.6.16.32

linux linux kernel 2.6.13.5

linux linux kernel 2.6.16.57

linux linux kernel 2.6.16.49

linux linux kernel 2.6.19.2

linux linux kernel 2.6.21.4

linux linux kernel 2.6.16.11

linux linux kernel 2.6.20.17

linux linux kernel 2.6.16.14

linux linux kernel 2.6.20.12

linux linux kernel 2.6.16.25

linux linux kernel 2.6.16.21

linux linux kernel 2.6.16.33

linux linux kernel 2.6.16.28

linux linux kernel 2.6.17.10

linux linux kernel 2.6.21.5

linux linux kernel 2.6.15.11

linux linux kernel 2.6.14.1

linux linux kernel 2.6.16.23

linux linux kernel 2.6.12.5

linux linux kernel 2.6.15.7

linux linux kernel 2.6.22.7

linux linux kernel 2.6.16.3

linux linux kernel 2.6.27.8

linux linux kernel 2.6.2.27.13

linux linux kernel 2.6.20.20

linux linux kernel 2.6.16.36

linux linux kernel 2.6.14.6

linux linux kernel 2.6.12.1

linux linux kernel 2.6.27.9

linux linux kernel 2.6.11.9

linux linux kernel 2.6.16.46

linux linux kernel 2.6.17.1

linux linux kernel 2.6.20.8

linux linux kernel 2.6.20.15

linux linux kernel 2.6.18.0

linux linux kernel 2.6.22.18

linux linux kernel 2.6.16.54

linux linux kernel 2.6.13.4

linux linux kernel 2.6.22.20

linux linux kernel 2.6.23

linux linux kernel 2.6.20.18

linux linux kernel 2.6.23.9

linux linux kernel 2.6.23.3

linux linux kernel 2.6.18.8

linux linux kernel 2.6.22.3

linux linux kernel 2.6.12.2

linux linux kernel 2.6.16.31

linux linux kernel 2.6.16.26

linux linux kernel 2.6.16.62

linux linux kernel 2.6.18.2

linux linux kernel 2.6.28.8

linux linux kernel 2.6.16.29

linux linux kernel 2.6.20.11

linux linux kernel 2.6.20.3

linux linux kernel 2.6.28.3

linux linux kernel 2.6.22.13

linux linux kernel 2.6.19.7

linux linux kernel 2.6.21.3

linux linux kernel 2.6.16.51

linux linux kernel 2.6.15.2

linux linux kernel 2.6.20.19

linux linux kernel 2.6.16.22

linux linux kernel 2.6.22.17

linux linux kernel 2.6.16.58

linux linux kernel 2.6.16.40

linux linux kernel 2.6.16.47

linux linux kernel 2.6.16.42

linux linux kernel 2.6.27.22

linux linux kernel 2.6.23.14

linux linux kernel 2.6.17.11

linux linux kernel 2.6.16.10

linux linux kernel 2.6.12.4

linux linux kernel 2.6.16.41

linux linux kernel 2.6.16.52

linux linux kernel 2.6.11.3

linux linux kernel 2.6.20.10

linux linux kernel 2.6.16.24

linux linux kernel 2.6.22.11

linux linux kernel 2.6.16.55

linux kernel 2.6.24.7

linux linux kernel 2.6.12.3

linux linux kernel 2.6.22.10

linux linux kernel 2.6.27.5

linux linux kernel 2.6.23.2

linux linux kernel 2.6.16_rc7

linux linux kernel 2.6.28.9

linux linux kernel 2.6.21.7

linux linux kernel 2.6.16.30

linux linux kernel 2.6.21.2

linux linux kernel 2.6.15.4

linux linux kernel 2.6.27.7

linux linux kernel 2.6.16.59

linux linux kernel 2.6.16.38

linux linux kernel 2.6.16.17

linux linux kernel 2.6.20.2

linux linux kernel 2.6.22.22

linux linux kernel 2.6.28.6

linux linux kernel 2.6.16.12

linux linux kernel 2.6.29.rc1

linux linux kernel 2.6.16.27

linux linux kernel 2.6.16.53

linux linux kernel 2.6.28.7

linux linux kernel 2.6.12.6

linux linux kernel 2.6.17.7

linux linux kernel 2.6.20.1

linux linux kernel 2.6.11.7

linux linux kernel 2.6.16.2

linux linux kernel 2.6.18.6

linux linux kernel 2.6.16.44

linux linux kernel 2.6.12.22

linux linux kernel 2.6.16.35

linux linux kernel 2.6.19.6

linux linux kernel 2.6.16.50

linux kernel 2.6.25.15

linux linux kernel 2.6.23.5

linux linux kernel 2.6.14.2

linux linux kernel 2.6.16.61

linux linux kernel 2.6.19.5

linux linux kernel 2.6.27.24

linux linux kernel 2.6.20.4

linux linux kernel 2.6.17.6

linux linux kernel 2.6.23.6

linux linux kernel 2.6.27.2

linux linux kernel 2.6.16.7

linux linux kernel 2.6.17.13

linux linux kernel 2.6.16.60

linux linux kernel 2.6.22.2

linux linux kernel 2.6.8.1

linux linux kernel 2.6.16.56

linux linux kernel 2.6.29.rc2

linux linux kernel 2.6.22.19

linux linux kernel 2.6.20.14

linux linux kernel 2.6.22.5

linux linux kernel 2.6.29.rc2-git1

linux linux kernel 2.6.20.7

linux linux kernel 2.6.28.1

linux linux kernel 2.6.16.5

linux linux kernel 2.6.11.4

linux linux kernel 2.6.16.19

linux linux kernel 2.6.27.6

linux linux kernel 2.6.11.12

linux linux kernel 2.6.16.20

linux linux kernel 2.6.15.5

linux linux kernel 2.6.28.10

linux linux kernel 2.6.22.16

linux linux kernel 2.6.11.1

linux linux kernel 2.6.27.23

linux linux kernel 2.6.13.1

linux linux kernel 2.6.22.14

linux linux kernel 2.6

Vendor Advisories

Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues and several bugsare now available for Red Hat Enterprise Linux 5This update has been rated as having important security impact by the RedHat Secur ...
Michael Tokarev discovered that the RTL8169 network driver did not correctly validate buffer sizes A remote attacker on the local network could send specially crafted traffic that would crash the system or potentially grant elevated privileges (CVE-2009-1389) ...
Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or privilege escalation The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-1385 Neil Horman discovered a missing fix from the e1000 network driver A remote user may cause a denial of service by w ...

References

CWE-119http://marc.info/?l=linux-netdev&m=123462461713724&w=2http://www.openwall.com/lists/oss-security/2009/06/10/1http://secunia.com/advisories/35265https://bugzilla.redhat.com/show_bug.cgi?id=504726http://lkml.org/lkml/2009/6/8/194http://www.securityfocus.com/bid/35281https://www.redhat.com/archives/fedora-package-announce/2009-June/msg01094.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-June/msg01048.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-June/msg01193.htmlhttp://secunia.com/advisories/35566http://www.redhat.com/support/errata/RHSA-2009-1157.htmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2009:148http://lists.opensuse.org/opensuse-security-announce/2009-07/msg00004.htmlhttp://secunia.com/advisories/36051http://www.debian.org/security/2009/dsa-1844http://secunia.com/advisories/36045http://www.ubuntu.com/usn/usn-807-1http://wiki.rpath.com/Advisories:rPSA-2009-0111http://secunia.com/advisories/35847http://www.redhat.com/support/errata/RHSA-2009-1193.htmlhttp://secunia.com/advisories/36131http://secunia.com/advisories/36327http://www.debian.org/security/2009/dsa-1865http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://secunia.com/advisories/37471http://secunia.com/advisories/37298http://www.vupen.com/english/advisories/2009/3316http://support.avaya.com/css/P8/documents/100067254http://support.citrix.com/article/CTX123453http://www.vupen.com/english/advisories/2010/0219http://www.securitytracker.com/id?1023507http://www.vupen.com/english/advisories/2010/1857http://lists.opensuse.org/opensuse-security-announce/2010-07/msg00006.htmlhttp://secunia.com/advisories/40645https://exchange.xforce.ibmcloud.com/vulnerabilities/51051https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8108https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10415http://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/archive/1/505254/100/0/threadedhttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=fdd7b4c3302c93f6833e338903ea77245eb510b4https://access.redhat.com/errata/RHSA-2009:1193https://usn.ubuntu.com/807-1/https://nvd.nist.gov