Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3h5j-qwmx-f9m6

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

EPSS

Процентиль: 89%
0.048
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

CVSS3: 3.3
redhat
больше 7 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

CVSS3: 5.5
nvd
больше 7 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

CVSS3: 5.5
debian
больше 7 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel b ...

oracle-oval
около 7 лет назад

ELSA-2018-4108: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 89%
0.048
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200