First published: Wed Feb 16 2011(Updated: )
Description of problem: Use strlcpy() to assure not to overflow the string array sizes by too long USB device name string (unlikely). This only affects Native Instruments USB audio devices. Proposed patch: <a href="http://git.kernel.org/?p=linux/kernel/git/tiwai/sound-2.6.git;a=commitdiff;h=eaae55dac6b64c0616046436b294e69fc5311581">http://git.kernel.org/?p=linux/kernel/git/tiwai/sound-2.6.git;a=commitdiff;h=eaae55dac6b64c0616046436b294e69fc5311581</a> Acknowledgements: Red Hat would like to thank Rafael Dominguez Vega for reporting this issue.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | =2.6.38-rc3 | |
Linux Linux kernel | =2.6.38-rc2 | |
Linux Linux kernel | =2.6.38-rc1 | |
Linux Linux kernel | <2.6.38 | |
Linux Linux kernel | =2.6.38 | |
Canonical Ubuntu Linux | =8.04 | |
debian/linux-2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.