6.9
CVSSv2

CVE-2009-2406

Published: 31/07/2009 Updated: 13/02/2023
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 615
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel prior to 2.6.30.4 allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving a crafted eCryptfs file, related to not ensuring that the key signature length in a Tag 11 packet is compatible with the key signature buffer size.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.11

linux linux kernel 2.6.20.6

linux linux kernel 2.6.28

linux linux kernel 2.6.8.1.5

linux linux kernel 2.6.0

linux linux kernel 2.6.4

linux linux kernel 2.6.17

linux linux kernel 2.6.20.9

linux linux kernel 2.6.18

linux linux kernel 2.6.29

linux linux kernel 2.6.23.4

linux linux kernel 2.6.22.15

linux linux kernel 2.6.16.16

linux linux kernel 2.6.20

linux linux kernel 2.6.18.7

linux linux kernel 2.6.17.12

linux linux kernel 2.6.16.39

linux linux kernel 2.6.27.3

linux linux kernel 2.6.29.3

linux linux kernel 2.6.21

linux linux kernel 2.6.16.9

linux linux kernel 2.6.12

linux linux kernel 2.6.17.9

linux linux kernel 2.6.12.12

linux linux kernel 2.6.19

linux linux kernel 2.6.14

linux linux kernel 2.6.11.2

linux linux kernel 2.6.5

linux linux kernel 2.6.15.3

linux linux kernel 2.6.11.10

linux linux kernel 2.6.10

linux linux kernel 2.6.13

linux linux kernel 2.6.1

linux linux kernel 2.6.16.43

linux linux kernel 2.6.16.6

linux linux kernel 2.6.16.8

linux linux kernel 2.6.16

linux linux kernel 2.6.20.13

linux linux kernel 2.6.22.4

linux linux kernel 2.6.7

linux linux kernel 2.6.14.7

linux linux kernel 2.6.3

linux linux kernel 2.6.17.2

linux linux kernel 2.6.15

linux linux kernel 2.6.13.3

linux linux kernel 2.6.11.8

linux linux kernel 2.6.16.34

linux linux kernel 2.6.27.21

linux linux kernel 2.6.11_rc1_bk6

linux linux kernel 2.6.22.21

linux linux kernel 2.6.23.7

linux linux kernel 2.6.17.8

linux linux kernel 2.6.14.4

linux linux kernel 2.2.6

linux linux kernel 2.6.17.4

linux linux kernel 2.6.16.18

linux linux kernel 2.6.17.14

linux linux kernel 2.6.27

linux linux kernel 2.6.16.45

linux linux kernel 2.6.22.12

linux linux kernel 2.6.14.3

linux linux kernel 2.6.24

linux linux kernel 2.6.18.3

linux linux kernel 2.6.16.37

linux linux kernel 2.6.30

linux linux kernel 2.6.11.6

linux linux kernel 2.6.16.48

linux linux kernel 2.6.11.11

linux linux kernel 2.6.16.13

linux linux kernel 2.6.21.6

linux linux kernel 2.6.22.1

linux linux kernel 2.6.9

linux linux kernel 2.6.16.4

linux linux kernel 2.6.17.3

linux linux kernel 2.6.22.6

linux linux kernel 2.6.20.5

linux linux kernel 2.6.22

linux linux kernel 2.6.28.4

linux linux kernel 2.6.16.15

linux linux kernel 2.6.27.20

linux linux kernel 2.6_test9_cvs

linux linux kernel 2.6.15.6

linux linux kernel 2.6.20.16

linux linux kernel 2.6.15.1

linux linux kernel 2.6.11.5

linux linux kernel 2.6.28.2

linux linux kernel 2.6.19.3

linux linux kernel 2.6.27.4

linux linux kernel 2.6.19.4

linux linux kernel 2.6.28.5

linux linux kernel 2.6.19.1

linux linux kernel 2.6.18.4

linux linux kernel 2.6.16.1

linux linux kernel 2.6.18.1

linux linux kernel 2.6.20.21

linux linux kernel 2.6.8

linux linux kernel 2.6.23.1

linux linux kernel 2.6.2

linux linux kernel 2.6.6

linux linux kernel 2.6.14.5

linux linux kernel 2.6.13.2

linux linux kernel 2.6.17.5

linux linux kernel 2.6.18.5

linux linux kernel 2.6.21.1

linux linux kernel 2.6.16.32

linux linux kernel 2.6.13.5

linux linux kernel 2.6.16.57

linux linux kernel 2.6.16.49

linux linux kernel 2.6.19.2

linux linux kernel 2.6.21.4

linux linux kernel 2.6.16.11

linux linux kernel 2.6.20.17

linux linux kernel 2.6.16.14

linux linux kernel 2.6.20.12

linux linux kernel 2.6.16.25

linux linux kernel 2.6.16.21

linux linux kernel 2.6.16.33

linux linux kernel 2.6.16.28

linux linux kernel 2.6.17.10

linux linux kernel 2.6.21.5

linux linux kernel 2.6.15.11

linux linux kernel 2.6.14.1

linux linux kernel 2.6.16.23

linux linux kernel 2.6.12.5

linux linux kernel 2.6.15.7

linux linux kernel 2.6.22.7

linux linux kernel 2.6.16.3

linux linux kernel

linux linux kernel 2.6.27.8

linux linux kernel 2.6.2.27.13

linux linux kernel 2.6.20.20

linux linux kernel 2.6.16.36

linux linux kernel 2.6.14.6

linux linux kernel 2.6.12.1

linux linux kernel 2.6.27.9

linux linux kernel 2.6.11.9

linux linux kernel 2.6.16.46

linux linux kernel 2.6.17.1

linux linux kernel 2.6.20.8

linux linux kernel 2.6.20.15

linux linux kernel 2.6.18.0

linux linux kernel 2.6.22.18

linux linux kernel 2.6.16.54

linux linux kernel 2.6.13.4

linux linux kernel 2.6.22.20

linux linux kernel 2.6.23

linux linux kernel 2.6.20.18

linux linux kernel 2.6.23.9

linux linux kernel 2.6.23.3

linux linux kernel 2.6.18.8

linux linux kernel 2.6.22.3

linux linux kernel 2.6.12.2

linux linux kernel 2.6.16.31

linux linux kernel 2.6.16.26

linux linux kernel 2.6.16.62

linux linux kernel 2.6.18.2

linux linux kernel 2.6.28.8

linux linux kernel 2.6.16.29

linux linux kernel 2.6.20.11

linux linux kernel 2.6.20.3

linux linux kernel 2.6.28.3

linux linux kernel 2.6.22.13

linux linux kernel 2.6.19.7

linux linux kernel 2.6.21.3

linux linux kernel 2.6.16.51

linux linux kernel 2.6.15.2

linux linux kernel 2.6.20.19

linux linux kernel 2.6.16.22

linux linux kernel 2.6.22.17

linux linux kernel 2.6.16.58

linux linux kernel 2.6.16.40

linux linux kernel 2.6.16.47

linux linux kernel 2.6.16.42

linux linux kernel 2.6.27.22

linux linux kernel 2.6.23.14

linux linux kernel 2.6.17.11

linux linux kernel 2.6.16.10

linux linux kernel 2.6.12.4

linux linux kernel 2.6.16.41

linux linux kernel 2.6.16.52

linux linux kernel 2.6.11.3

linux linux kernel 2.6.20.10

linux linux kernel 2.6.16.24

linux linux kernel 2.6.22.11

linux linux kernel 2.6.16.55

linux kernel 2.6.24.7

linux linux kernel 2.6.12.3

linux linux kernel 2.6.22.10

linux linux kernel 2.6.27.5

linux linux kernel 2.6.23.2

linux linux kernel 2.6.16_rc7

linux linux kernel 2.6.28.9

linux linux kernel 2.6.30.2

linux linux kernel 2.6.21.7

linux linux kernel 2.6.16.30

linux linux kernel 2.6.21.2

linux linux kernel 2.6.15.4

linux linux kernel 2.6.27.7

linux linux kernel 2.6.16.59

linux linux kernel 2.6.30.1

linux linux kernel 2.6.16.38

linux linux kernel 2.6.16.17

linux linux kernel 2.6.20.2

linux linux kernel 2.6.22.22

linux linux kernel 2.6.28.6

linux linux kernel 2.6.16.12

linux linux kernel 2.6.29.rc1

linux linux kernel 2.6.16.27

linux linux kernel 2.6.16.53

linux linux kernel 2.6.28.7

linux linux kernel 2.6.12.6

linux linux kernel 2.6.17.7

linux linux kernel 2.6.20.1

linux linux kernel 2.6.11.7

linux linux kernel 2.6.16.2

linux linux kernel 2.6.18.6

linux linux kernel 2.6.16.44

linux linux kernel 2.6.12.22

linux linux kernel 2.6.16.35

linux linux kernel 2.6.19.6

linux linux kernel 2.6.16.50

linux kernel 2.6.25.15

linux linux kernel 2.6.23.5

linux linux kernel 2.6.14.2

linux linux kernel 2.6.16.61

linux linux kernel 2.6.19.5

linux linux kernel 2.6.27.24

linux linux kernel 2.6.20.4

linux linux kernel 2.6.17.6

linux linux kernel 2.6.23.6

linux linux kernel 2.6.27.2

linux linux kernel 2.6.16.7

linux linux kernel 2.6.17.13

linux linux kernel 2.6.16.60

linux linux kernel 2.6.22.2

linux linux kernel 2.6.8.1

linux linux kernel 2.6.16.56

linux linux kernel 2.6.29.rc2

linux linux kernel 2.6.22.19

linux linux kernel 2.6.20.14

linux linux kernel 2.6.22.5

linux linux kernel 2.6.29.rc2-git1

linux linux kernel 2.6.20.7

linux linux kernel 2.6.28.1

linux linux kernel 2.6.16.5

linux linux kernel 2.6.11.4

linux linux kernel 2.6.16.19

linux linux kernel 2.6.27.6

linux linux kernel 2.6.11.12

linux linux kernel 2.6.16.20

linux linux kernel 2.6.15.5

linux linux kernel 2.6.28.10

linux linux kernel 2.6.22.16

linux linux kernel 2.6.11.1

linux linux kernel 2.6.27.23

linux linux kernel 2.6.13.1

linux linux kernel 2.6.22.14

linux linux kernel 2.6

Vendor Advisories

Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues and several bugsare now available for Red Hat Enterprise Linux 5This update has been rated as having important security impact by the RedHat Secur ...
Michael Tokarev discovered that the RTL8169 network driver did not correctly validate buffer sizes A remote attacker on the local network could send specially crafted traffic that would crash the system or potentially grant elevated privileges (CVE-2009-1389) ...
Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service, or privilege escalation The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-1895 Julien Tinnes and Tavis Ormandy reported an issue in the Linux personality code Local users can take advantage of ...
Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or privilege escalation The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-1385 Neil Horman discovered a missing fix from the e1000 network driver A remote user may cause a denial of service by w ...

References

CWE-119http://www.vupen.com/english/advisories/2009/2041http://secunia.com/advisories/36045http://www.debian.org/security/2009/dsa-1845http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.30.4http://secunia.com/advisories/36054http://risesecurity.org/advisories/RISE-2009002.txthttp://www.securityfocus.com/bid/35851http://secunia.com/advisories/35985http://www.ubuntu.com/usn/usn-807-1http://secunia.com/advisories/36051http://www.debian.org/security/2009/dsa-1844https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00166.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-August/msg00223.htmlhttp://secunia.com/advisories/36116http://www.securitytracker.com/id?1022663http://secunia.com/advisories/36131http://www.redhat.com/support/errata/RHSA-2009-1193.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-09/msg00001.htmlhttp://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://secunia.com/advisories/37471http://www.vupen.com/english/advisories/2009/3316http://www.mandriva.com/security/advisories?name=MDVSA-2011:029https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8246https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10072http://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/archive/1/505334/100/0/threadedhttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=6352a29305373ae6196491e6d4669f301e26492ehttps://access.redhat.com/errata/RHSA-2009:1193https://usn.ubuntu.com/807-1/https://nvd.nist.gov