Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-53hx-f3mf-p54c

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.

Ссылки

EPSS

Процентиль: 24%
0.00077
Низкий

Дефекты

CWE-909

Связанные уязвимости

ubuntu
больше 15 лет назад

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.

redhat
почти 16 лет назад

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.

nvd
больше 15 лет назад

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.

debian
больше 15 лет назад

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem ...

oracle-oval
больше 15 лет назад

ELSA-2009-1548: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 24%
0.00077
Низкий

Дефекты

CWE-909