CVE-2011-1169: Out-of-bounds Read

Published Mar 18, 2011
·
Updated

Array index error in the asihpihpiioctl function in sound/pci/asihpi ...

Other sources

Description of the problem: The user-supplied index into the adapters array needs to be checked, or an out-of-bounds kernel pointer could be accessed and used, leading to potentially exploitable memory corruption.

Reference: http://seclists.org/oss-sec/2011/q1/540

Upstream commit: http://git.kernel.org/?p=linux/kernel/git/tiwai/sound-2.6.git;a=commit;h=4a122c10fbfe9020df469f0f669da129c5757671

Acknowledgements: Red Hat would like to thank Dan Rosenberg for reporting this issue.

Red Hat

Affected Software

2 affected components
Linux Linux kernel<2.6.38.1
debian/linux-2.6

Event History

Mar 18, 2011
Data Sourced
via Red Hat·12:45 PM
DescriptionSeverityAffected Software
May 3, 2011
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Jan 15, 2024
Data Sourced
via Launchpad·09:57 PM
Description
Sep 15, 2024
Data Sourced
via Ubuntu·10:39 PM
RemedyDescriptionSeverityAffected Software
Feb 26, 2025
Data Sourced
via Debian·11:33 PM
DescriptionAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2011-1169?

CVE-2011-1169 is classified as a medium severity vulnerability due to its potential to cause memory corruption.

2

How do I fix CVE-2011-1169?

To fix CVE-2011-1169, update to the Linux kernel version 2.6.38.1 or later.

3

What type of vulnerability is CVE-2011-1169?

CVE-2011-1169 is an array index error vulnerability found in the AudioScience HPI driver.

4

Who is affected by CVE-2011-1169?

Local users with access to systems running Linux kernel versions prior to 2.6.38.1 are affected by CVE-2011-1169.

5

What can exploit CVE-2011-1169?

An attacker can exploit CVE-2011-1169 by providing a crafted adapter index value to the asihpi_hpi_ioctl function.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203