Candidate: CVE-2009-1633 PublicDate: 2009-05-28 20:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1633 https://ubuntu.com/security/notices/USN-793-1 Description: Multiple buffer overflows in the cifs subsystem in the Linux kernel before 2.6.29.4 allow remote CIFS servers to cause a denial of service (memory corruption) and possibly have unspecified other impact via (1) a malformed Unicode string, related to Unicode string area alignment in fs/cifs/sess.c; or (2) long Unicode characters, related to fs/cifs/cifssmb.c and the cifs_readdir function in fs/cifs/readdir.c. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_linux-source-2.6.15: upstream_linux-source-2.6.15: needs-triage dapper_linux-source-2.6.15: released (2.6.15-54.77) hardy_linux-source-2.6.15: DNE intrepid_linux-source-2.6.15: DNE jaunty_linux-source-2.6.15: DNE devel_linux-source-2.6.15: DNE Patches_linux: upstream_linux: needs-triage dapper_linux: DNE hardy_linux: released (2.6.24-24.55) intrepid_linux: released (2.6.27-14.35) jaunty_linux: released (2.6.28-13.45) devel_linux: not-affected