CVE-2009-3288: Buffer Overflow
The sgbuildindirect function in drivers/scsi/sg.c in Linux kernel 2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing an array, which allows local users to cause a denial of service (kernel OOPS and NULL pointer dereference), as demonstrated by using xcdroast to duplicate a CD. NOTE: this is only exploitable by users who can open the cdrom device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3288?
CVE-2009-3288 has a severity rating that indicates it can lead to a denial of service due to kernel crashes.
How do I fix CVE-2009-3288?
To fix CVE-2009-3288, users should upgrade to a version of the Linux kernel that is patched for this vulnerability.
What platforms are affected by CVE-2009-3288?
CVE-2009-3288 affects specific versions of the Linux kernel, including 2.6.28-rc1 through 2.6.31-rc8.
What happens if CVE-2009-3288 is exploited?
Exploitation of CVE-2009-3288 can lead to a kernel OOPS and a NULL pointer dereference, causing system instability.
Who is impacted by CVE-2009-3288?
Local users on systems running vulnerable versions of the Linux kernel could potentially impact system stability through CVE-2009-3288.