Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3001

Опубликовано: 23 авг. 2009
Источник: redhat
CVSS2: 2.1
EPSS Низкий

Описание

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

Отчет

Not vulnerable. This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3, 4, 5 or Red Hat Enterprise MRG. Red Hat does not provide support for PF_LLC sockets in the Linux kernels.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=519305kernel: numerous getname() infoleaks

EPSS

Процентиль: 26%
0.00087
Низкий

2.1 Low

CVSS2

Связанные уязвимости

ubuntu
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

nvd
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

debian
больше 16 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2. ...

github
больше 3 лет назад

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

EPSS

Процентиль: 26%
0.00087
Низкий

2.1 Low

CVSS2