Candidate: CVE-2008-5025 PublicDate: 2008-11-17 23:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5025 https://ubuntu.com/security/notices/USN-679-1 Description: Stack-based buffer overflow in the hfs_cat_find_brec function in fs/hfs/catalog.c in the Linux kernel before 2.6.28-rc1 allows attackers to cause a denial of service (memory corruption or system crash) via an hfs filesystem image with an invalid catalog namelength field, a related issue to CVE-2008-4933. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_linux-source-2.6.15: upstream_linux-source-2.6.15: released (2.6.28~rc1) dapper_linux-source-2.6.15: released (2.6.15-53.74) gutsy_linux-source-2.6.15: DNE hardy_linux-source-2.6.15: DNE intrepid_linux-source-2.6.15: DNE devel_linux-source-2.6.15: DNE Patches_linux-source-2.6.22: upstream_linux-source-2.6.22: released (2.6.28~rc1) dapper_linux-source-2.6.22: DNE gutsy_linux-source-2.6.22: released (2.6.22-16.60) hardy_linux-source-2.6.22: DNE intrepid_linux-source-2.6.22: DNE devel_linux-source-2.6.22: DNE Patches_linux: break-fix: - d38b7aa7fc3371b52d036748028db50b585ade2e upstream_linux: released (2.6.28~rc1) dapper_linux: DNE gutsy_linux: DNE hardy_linux: released (2.6.24-22.45) intrepid_linux: released (2.6.27-9.19) devel_linux: not-affected