Integer signedness error in the ax25_setsockopt function in net/ax25/af_ax25.c in the ax25 subsystem in the Linux kernel before 2.6.31.2 allows local users to cause a denial of service (OOPS) via a crafted optlen value in an SO_BINDTODEVICE operation.
Advisories
Source ID Title
Debian DSA Debian DSA DSA-1915-1 New Linux 2.6.26 packages fix several vulnerabilities
Debian DSA Debian DSA DSA-1928-1 New Linux 2.6.24 packages fix several vulnerabilities
Debian DSA Debian DSA DSA-1929-1 New Linux 2.6.18 packages fix several vulnerabilities
EUVD EUVD EUVD-2009-2897 Integer signedness error in the ax25_setsockopt function in net/ax25/af_ax25.c in the ax25 subsystem in the Linux kernel before 2.6.31.2 allows local users to cause a denial of service (OOPS) via a crafted optlen value in an SO_BINDTODEVICE operation.
Ubuntu USN Ubuntu USN USN-864-1 Linux kernel vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 28 May 2025 14:45:00 +0000

Type Values Removed Values Added
References

Thu, 22 May 2025 04:30:00 +0000


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-07T06:07:37.191Z

Reserved: 2009-08-20T00:00:00

Link: CVE-2009-2909

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2009-10-20T17:30:00.843

Modified: 2025-04-09T00:30:58.490

Link: CVE-2009-2909

cve-icon Redhat

Severity : Important

Publid Date: 2009-10-02T00:00:00Z

Links: CVE-2009-2909 - Bugzilla

cve-icon OpenCVE Enrichment

No data.