[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: [SECURITY] [DSA 1713-1] New rt2500 packages fix arbitrary code execution



Moritz Muehlenhoff wrote:

> - ------------------------------------------------------------------------
> Debian Security Advisory DSA-1713-1                  security@debian.org
> http://www.debian.org/security/                       Moritz Muehlenhoff
> January 28, 2009                      http://www.debian.org/security/faq
> - ------------------------------------------------------------------------
> 
> Package        : rt2500
> Vulnerability  : integer overflow
> Problem type   : remote
> Debian-specific: no
> CVE Id(s)      : CVE-2009-0282
> 
> It was discovered that an integer overflow in the "Probe Request"
> packet parser of the Ralinktech wireless drivers might lead to
> remote denial of service or the execution of arbitrary code.

Not for us.


Regards,

-- 
Chris Lamb, www.playfire.com/lamby                        GPG: 0x634F9A20


Reply to: