The OZWPAN driver in the Linux kernel through 4.0.5 relies on an untrusted length field during packet parsing, which allows remote attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read and system crash) via a crafted packet.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-06-07T23:00:00

Updated: 2024-08-06T06:04:02.838Z

Reserved: 2015-05-15T00:00:00

Link: CVE-2015-4004

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2015-06-07T23:59:08.660

Modified: 2022-12-12T20:21:46.777

Link: CVE-2015-4004

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-05-13T00:00:00Z

Links: CVE-2015-4004 - Bugzilla