Linux Kernel USB io_edgeport Driver Integer Overflow May Let Local Users Execute Arbitrary Code
Categorie: Vulnerability Posted: 2004-12-14 by ReCall Views: 423 Source: Click here
Current Rating: Not rated
Details
Description: A vulnerability was reported in the Linux kernel io_edgeport driver. A local user with a USB dongle can cause the kernel to crash or may be able to gain elevated privileges on the target system.
The flaw resides in the edge_startup() function in 'drivers/usb/serial/io_edgeport.c'.
In July 2004, Willem Riede reported this flaw.
Impact: A physically local user may be able to gain elevated privileges on the target system.
A physically local user can cause the kernel to crash.