#VU99738 Integer overflow in Linux kernel - CVE-2004-0658
Published: August 6, 2004 / Updated: July 11, 2017
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to execute arbitrary code.
Integer overflow in the hpsb_alloc_packet function (incorrectly reported as alloc_hpsb_packet) in IEEE 1394 (Firewire) driver 2.4 and 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via the functions (1) raw1394_write, (2) state_connected, (3) handle_remote_request, or (4) hpsb_make_writebpacket.