Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3mf5-jc6x-rp7q

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system call and the "old shm interface."

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system call and the "old shm interface."

Ссылки

EPSS

Процентиль: 28%
0.00096
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 14 лет назад

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system call and the "old shm interface."

redhat
больше 14 лет назад

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system call and the "old shm interface."

nvd
больше 14 лет назад

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system call and the "old shm interface."

debian
больше 14 лет назад

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel befor ...

fstec
больше 14 лет назад

Уязвимости операционной системы CentOS, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 28%
0.00096
Низкий

Дефекты

CWE-200