Integer overflow in the hpsb_alloc_packet function (incorrectly reported as alloc_hpsb_packet) in IEEE 1394 (Firewire) driver 2.4 and 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via the functions (1) raw1394_write, (2) state_connected, (3) handle_remote_request, or (4) hpsb_make_writebpacket.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2004-07-13T04:00:00

Updated: 2024-08-08T00:24:26.976Z

Reserved: 2004-07-12T00:00:00

Link: CVE-2004-0658

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2004-08-06T04:00:00.000

Modified: 2024-11-20T23:49:05.463

Link: CVE-2004-0658

cve-icon Redhat

No data.