Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5549

Опубликовано: 06 фев. 2017
Источник: nvd
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel before 4.9.5 places uninitialized heap-memory contents into a log entry upon a failure to read the line status, which allows local users to obtain sensitive information by reading the log.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.9.4 (включая)

EPSS

Процентиль: 25%
0.00082
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 8 лет назад

The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel before 4.9.5 places uninitialized heap-memory contents into a log entry upon a failure to read the line status, which allows local users to obtain sensitive information by reading the log.

CVSS3: 3.3
redhat
больше 8 лет назад

The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel before 4.9.5 places uninitialized heap-memory contents into a log entry upon a failure to read the line status, which allows local users to obtain sensitive information by reading the log.

CVSS3: 5.5
debian
больше 8 лет назад

The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105. ...

CVSS3: 5.5
github
больше 3 лет назад

The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel before 4.9.5 places uninitialized heap-memory contents into a log entry upon a failure to read the line status, which allows local users to obtain sensitive information by reading the log.

CVSS3: 5.5
fstec
больше 8 лет назад

Уязвимость операционной системы Linux, позволяющая нарушителю получить конфиденциальную информацию

EPSS

Процентиль: 25%
0.00082
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-532