CVE Database
/

CVE-2008-5396

Back to search

CVE-2008-5396

Published: Dec 9, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Array index error in the (1) torisa.c and (2) dahdi/tor2.c drivers in Zaptel (aka DAHDI) 1.4.11 and earlier allows local users in the dialout group to overwrite an integer value in kernel memory by writing to /dev/zap/ctl, related to missing validation of the sync field associated with the ZT_SPANCONFIG ioctl.

VendorProductVersions

n/a

n/a

affected
n/a

References

32947
third-party-advisory
x_refsource_SECUNIA
32960
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now