IEEE1394 Specification allows client devices to directly access host memory, bypassing operating system limitations. A malicious client device can read and modify sensitive memory, causing privilege escalation, information leakage and system compromise.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/34858/ieee1394.txt
Source: https://packetstormsecurity.com/files/34858/ieee1394.txt.html

