Candidate: CVE-2010-4157 Description: gdth: integer overflow in ioc_general() References: Notes: dannf> Not a security issue (discussed on oss-security, iirc) jmm> It was clarified later on oss-sec, that this is in fact exploitable Bugs: upstream: released (2.6.37-rc1) [f63ae56e4e97fb12053590e41a4fa59e7daa74a4] 2.6.32-upstream-stable: released (2.6.32.26) linux-2.6: released (2.6.32-28) [bugfix/all/stable/2.6.32.26.patch] 2.6.26-lenny-security: released (2.6.26-26lenny1) [bugfix/all/gdth-integer-overflow-in-ioctl.patch] 2.6.32-squeeze-security: released (2.6.32-28) [bugfix/all/stable/2.6.32.26.patch]