Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h9p4-8w88-cwc7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a call to getlogin, which returns the entire buffer.

The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a call to getlogin, which returns the entire buffer.

EPSS

Процентиль: 21%
0.00068
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
около 11 лет назад

The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a call to getlogin, which returns the entire buffer.

nvd
около 11 лет назад

The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a call to getlogin, which returns the entire buffer.

debian
около 11 лет назад

The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initial ...

EPSS

Процентиль: 21%
0.00068
Низкий

Дефекты

CWE-200