Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3h5j-qwmx-f9m6

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

EPSS

Процентиль: 89%
0.048
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 8 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

CVSS3: 3.3
redhat
почти 8 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

CVSS3: 5.5
nvd
почти 8 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

CVSS3: 5.5
debian
почти 8 лет назад

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel b ...

oracle-oval
больше 7 лет назад

ELSA-2018-4108: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 89%
0.048
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200