CVE-2009-3080: Out-of-bounds Read
Array index error in the gdthreadevent function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3080?
CVE-2009-3080 has a medium to high severity level as it allows local users to cause a denial of service or potentially gain privileges.
How do I fix CVE-2009-3080?
To fix CVE-2009-3080, update the Linux kernel to version 2.6.32-rc8 or later.
What versions are affected by CVE-2009-3080?
CVE-2009-3080 affects various Linux kernel versions prior to 2.6.32-rc8, including 2.6.31.6 and earlier release candidates.
What type of vulnerability is CVE-2009-3080?
CVE-2009-3080 is an array index error vulnerability located in the gdth_read_event function in the Linux kernel.
Can CVE-2009-3080 be exploited remotely?
CVE-2009-3080 cannot be exploited remotely as it requires local access to the system.