Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2009-1385

Overview

Vulnerability Score 7.8 7.8
CVE Id CVE-2009-1385
Last Modified 19 Mar 2012 12:00:00
Published 04 Jun 2009 12:30:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2009-1385

Summary

Integer underflow in the e1000_clean_rx_irq function in drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel before 2.6.30-rc8, the e1000e driver in the Linux kernel, and Intel Wired Ethernet (aka e1000) before 7.5.5 allows remote attackers to cause a denial of service (panic) via a crafted frame size.

Vulnerable Systems

Operating System

  • Linux Kernel 2.2.27

  • Linux Kernel 2.4.36

  • Linux Kernel 2.4.36.1

  • Linux Kernel 2.4.36.2

  • Linux Kernel 2.4.36.3

  • Linux Kernel 2.4.36.4

  • Linux Kernel 2.4.36.5

  • Linux Kernel 2.4.36.6

  • Linux Kernel 2.6

  • Linux Kernel 2.6.18

  • Linux Kernel 2.6.19.4

  • Linux Kernel 2.6.19.5

  • Linux Kernel 2.6.19.6

  • Linux Kernel 2.6.19.7

  • Linux Kernel 2.6.20.16

  • Linux Kernel 2.6.20.17

  • Linux Kernel 2.6.20.18

  • Linux Kernel 2.6.20.19

  • Linux Kernel 2.6.20.20

  • Linux Kernel 2.6.20.21

  • Linux Kernel 2.6.21.5

  • Linux Kernel 2.6.21.6

  • Linux Kernel 2.6.21.7

  • Linux Kernel 2.6.22

  • Linux Kernel 2.6.22 Rc1

  • Linux Kernel 2.6.22 Rc7

  • Linux Kernel 2.6.22.1

  • Linux Kernel 2.6.22.10

  • Linux Kernel 2.6.22.11

  • Linux Kernel 2.6.22.12

  • Linux Kernel 2.6.22.13

  • Linux Kernel 2.6.22.14

  • Linux Kernel 2.6.22.15

  • Linux Kernel 2.6.22.17

  • Linux Kernel 2.6.22.18

  • Linux Kernel 2.6.22.19

  • Linux Kernel 2.6.22.2

  • Linux Kernel 2.6.22.20

  • Linux Kernel 2.6.22.21

  • Linux Kernel 2.6.22.22

  • Linux Kernel 2.6.22.8

  • Linux Kernel 2.6.22.9

  • Linux Kernel 2.6.23

  • Linux Kernel 2.6.23 Rc1

  • Linux Kernel 2.6.23.10

  • Linux Kernel 2.6.23.11

  • Linux Kernel 2.6.23.12

  • Linux Kernel 2.6.23.13

  • Linux Kernel 2.6.23.15

  • Linux Kernel 2.6.23.16

  • Linux Kernel 2.6.23.17

  • Linux Kernel 2.6.23.8

  • Linux Kernel 2.6.23.9

  • Linux Kernel 2.6.24

  • Linux Kernel 2.6.24 Rc1

  • Linux Kernel 2.6.24 Rc4

  • Linux Kernel 2.6.24 Rc5

  • Linux Kernel 2.6.24.1

  • Linux Kernel 2.6.24.2

  • Linux Kernel 2.6.24.3

  • Linux Kernel 2.6.24.4

  • Linux Kernel 2.6.24.5

  • Linux Kernel 2.6.24.6

  • Linux Kernel 2.6.25

  • Linux Kernel 2.6.25.1

  • Linux Kernel 2.6.25.10

  • Linux Kernel 2.6.25.11

  • Linux Kernel 2.6.25.12

  • Linux Kernel 2.6.25.13

  • Linux Kernel 2.6.25.14

  • Linux Kernel 2.6.25.16

  • Linux Kernel 2.6.25.17

  • Linux Kernel 2.6.25.2

  • Linux Kernel 2.6.25.3

  • Linux Kernel 2.6.25.4

  • Linux Kernel 2.6.25.5

  • Linux Kernel 2.6.25.6

  • Linux Kernel 2.6.25.7

  • Linux Kernel 2.6.25.8

  • Linux Kernel 2.6.25.9

  • Linux Kernel 2.6.26

  • Linux Kernel 2.6.26.1

  • Linux Kernel 2.6.26.2

  • Linux Kernel 2.6.26.3

  • Linux Kernel 2.6.26.4

  • Linux Kernel 2.6.26.5

  • Linux Kernel 2.6.27

  • Linux Kernel 2.6.28

  • Linux Kernel 2.6.29

  • Linux Kernel 2.6.29.3

  • Linux Kernel 2.6.29.rc1

  • Linux Kernel 2.6.29.rc2

  • Linux Kernel 2.6.29.rc2-git1

  • Linux Kernel 2.6.30

Application

  • Intel E1000 5.2.22

  • Intel E1000 5.2.30.1

  • Intel E1000 5.2.52

  • Intel E1000 5.3.19

  • Intel E1000 5.4.11

  • Intel E1000 5.5.4

  • Intel E1000 5.6.10

  • Intel E1000 5.6.10.1

  • Intel E1000 5.7.6

  • Intel E1000 6.0.54

  • Intel E1000 6.0.60

  • Intel E1000 6.1.16

  • Intel E1000 6.2.15

  • Intel E1000 6.3.9

  • Intel E1000 7.0.33

  • Intel E1000 7.0.41

  • Intel E1000 7.1.9

  • Intel E1000 7.2.7

  • Intel E1000 7.2.9

  • Intel E1000 7.3.15

  • Intel E1000 7.3.20

  • Intel E1000 7.4.27

  • Intel E1000 7.4.35

  • Linux Kernel 2.6.24.7

  • Linux Kernel 2.6.25.15


References

CONFIRM - https://bugzilla.redhat.com/show_bug.cgi?id=502981

CONFIRM - http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.30-rc8

CONFIRM - http://sourceforge.net/project/shownotes.php?release_id=504022&group_id=42302

FEDORA - FEDORA-2009-6846

FEDORA - FEDORA-2009-6768

FEDORA - FEDORA-2009-6883

REDHAT - RHSA-2009:1550

VUPEN - ADV-2009-3316

CONFIRM - http://www.vmware.com/security/advisories/VMSA-2009-0016.html

UBUNTU - USN-793-1

BID - 35185

BUGTRAQ - 20100625 VMSA-2010-0010 ESX 3.5 third party update for Service Console kernel

BUGTRAQ - 20091120 VMSA-2009-0016 VMware vCenter and ESX update release and vMA patch release address multiple security issue in third party components

BUGTRAQ - 20090724 rPSA-2009-0111-1 kernel

REDHAT - RHSA-2009:1193

REDHAT - RHSA-2009:1157

MLIST - [oss-security] 20090603 CVE-2009-1385 kernel: e1000_clean_rx_irq() denial of service

MANDRIVA - MDVSA-2009:148

MANDRIVA - MDVSA-2009:135

CONFIRM - http://www.intel.com/support/network/sb/CS-030543.htm

DEBIAN - DSA-1865

DEBIAN - DSA-1844

CONFIRM - http://wiki.rpath.com/Advisories:rPSA-2009-0111

SECUNIA - 37471

SECUNIA - 36327

SECUNIA - 36131

SECUNIA - 36051

SECUNIA - 35847

SECUNIA - 35656

SECUNIA - 35623

SECUNIA - 35566

SECUNIA - 35265

OSVDB - 54892

SUSE - SUSE-SA:2009:038

CONFIRM - http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ea30e11970a96cfe5e32c03a29332554573b4a10


Last Updated: 27 May 2016 10:59:52