| Severity : |
Medium
|
| Published : |
2011-01-13
|
| Modified : |
2012-03-19
|
| Base Score : |
6.9
|
| Details : |
The load_mixer_volumes function in sound/oss/soundcard.c in the OSS sound subsystem in the Linux kernel before 2.6.37 incorrectly expects that a certain name field ends with a '\0' character, which allows local users to conduct buffer overflow attacks and gain privileges, or possibly obtain sensitive information from kernel memory, via a SOUND_MIXER_SETLEVELS ioctl call.
|
| Product/Version : |
MVL6 Kernel 2.6.24
Pro 4.x
CGE 4.x
Mobilinux 4.x
Professional PRO 5.0
Professional PRO 5.0
CGE 5.x
Mobilinux 5.x
|
|