DESCRIPTION:
Two vulnerabilities have been reported in the Linux Kernel, with an
unknown impact.
1) A boundary error due to missing parameter validation in the
"map_to_seg7()" function in "drivers/usb/input/map_to_7segment.h" of
the Yealink driver may cause out-of-bound memory references.
2) A boundary error in "/drivers/i2c/i2c-core.c" when handling SMBus
Block Write transactions may cause a buffer overflow.
SOLUTION:
The vulnerabilities have been fixed in version 2.6.14-git4.
PROVIDED AND/OR DISCOVERED BY:
Reported by vendor.
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.