{ "schema_version": "1.4.0", "id": "GHSA-hvm6-88j5-7vcm", "modified": "2025-04-09T04:12:14Z", "published": "2022-05-02T03:36:50Z", "aliases": [ "CVE-2009-2584" ], "details": "Off-by-one error in the options_write function in drivers/misc/sgi-gru/gruprocfs.c in the SGI GRU driver in the Linux kernel 2.6.30.2 and earlier on ia64 and x86 platforms might allow local users to overwrite arbitrary memory locations and gain privileges via a crafted count argument, which triggers a stack-based buffer overflow.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2584" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51887" }, { "type": "WEB", "url": "http://grsecurity.net/~spender/exploit_demo.c" }, { "type": "WEB", "url": "http://lkml.org/lkml/2009/7/20/348" }, { "type": "WEB", "url": "http://lkml.org/lkml/2009/7/20/362" }, { "type": "WEB", "url": "http://secunia.com/advisories/37105" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/35753" }, { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-852-1" }, { "type": "WEB", "url": "http://xorl.wordpress.com/2009/07/21/linux-kernel-sgi-gru-driver-off-by-one-overwrite" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2009-07-23T20:30:00Z" } }