Back to search
CVE-2008-4589
Published: Oct 15, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Heap-based buffer overflow in the tvtumin.sys kernel driver in Lenovo Rescue and Recovery 4.20, including 4.20.0511 and 4.20.0512, allows local users to execute arbitrary code via a long file name.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20081010 iSEC Partners Security Advisory - 2008-002-lenovornr - Lenovo Rescue and Recovery 4.20
mailing-list
x_refsource_BUGTRAQ
32252
third-party-advisory
x_refsource_SECUNIA
4421
third-party-advisory
x_refsource_SREASON
http://www-307.ibm.com/pc/support/site.wss/MIGR-70699.html
x_refsource_CONFIRM
http://www.isecpartners.com/advisories/2008-02-lenovornr.txt
x_refsource_MISC
http://www-307.ibm.com/pc/support/site.wss/MIGR-4Q2QAK.html
x_refsource_CONFIRM
ADV-2008-2806
vdb-entry
x_refsource_VUPEN
1021041
vdb-entry
x_refsource_SECTRACK
lenovo-rescue-recovery-tvtumin-bo(45839)
vdb-entry
x_refsource_XF
31737
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now