Array index error in the gdth_read_event function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request.
AV:L/AC:L/Au:N/C:C/I:C/A:C
This vulnerability has a 0.42% probability of being exploited in the next 30 days, ranking higher than 34% of all scored CVEs.