// For flags

CVE-2007-0005

Linux Omnikey Cardman 4040 Driver - Local Buffer Overflow (PoC)

Severity Score

6.9
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple buffer overflows in the (1) read and (2) write handlers in the Omnikey CardMan 4040 driver in the Linux kernel before 2.6.21-rc3 allow local users to gain privileges.

MĂșltiples desbordamientos de bĂșfer en los manejadores de (1) lectura y (2) escritura en el controlador Omnikey CardMan 4040 en el kernel de Linux versiones anteriores a 2.6.21-rc3, permite a usuarios locales alcanzar privilegios.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-12-19 CVE Reserved
  • 2007-03-09 First Exploit
  • 2007-03-10 CVE Published
  • 2024-08-02 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (27)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
<= 2.6.21
Search vendor "Linux" for product "Linux Kernel" and version " <= 2.6.21"
rc2
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21"
rc1
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.1
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.1"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.2
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.2"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.3
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.3"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.4
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.4"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.5
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.5"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.6
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.6"
-
Safe
Omnikey.aaitg
Search vendor "Omnikey.aaitg"
Omnikey Cardman 4040
Search vendor "Omnikey.aaitg" for product "Omnikey Cardman 4040"
*-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
2.6.21.7
Search vendor "Linux" for product "Linux Kernel" and version "2.6.21.7"
-
Safe