Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3877

Опубликовано: 03 янв. 2011
Источник: nvd
CVSS2: 1.9
EPSS Низкий

Описание

The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structure.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 2.6.37 (исключая)
cpe:2.3:o:linux:linux_kernel:2.6.37:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:2.6.37:rc1:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:*

EPSS

Процентиль: 30%
0.00108
Низкий

1.9 Low

CVSS2

Дефекты

CWE-909

Связанные уязвимости

ubuntu
больше 14 лет назад

The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structure.

redhat
больше 14 лет назад

The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structure.

debian
больше 14 лет назад

The get_name function in net/tipc/socket.c in the Linux kernel before ...

github
около 3 лет назад

The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structure.

oracle-oval
больше 14 лет назад

ELSA-2011-0017: Oracle Linux 5.6 kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 30%
0.00108
Низкий

1.9 Low

CVSS2

Дефекты

CWE-909