Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5pcq-rhwq-4w2j

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

EPSS

Процентиль: 26%
0.00087
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

redhat
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

nvd
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

debian
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2. ...

EPSS

Процентиль: 26%
0.00087
Низкий

Дефекты

CWE-200