Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3001

Опубликовано: 23 авг. 2009
Источник: redhat
CVSS2: 2.1

Описание

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

Отчет

Not vulnerable. This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3, 4, 5 or Red Hat Enterprise MRG. Red Hat does not provide support for PF_LLC sockets in the Linux kernels.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=519305kernel: numerous getname() infoleaks

2.1 Low

CVSS2

Связанные уязвимости

ubuntu
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

nvd
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

debian
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2. ...

github
почти 4 года назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

2.1 Low

CVSS2