Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-4655

Опубликовано: 11 окт. 2010
Источник: redhat
CVSS2: 1.2

Описание

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability for an ethtool ioctl call.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=672428kernel: heap contents leak for CAP_NET_ADMIN via ethtool ioctl

1.2 Low

CVSS2

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 14 лет назад

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability for an ethtool ioctl call.

CVSS3: 5.5
nvd
почти 14 лет назад

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability for an ethtool ioctl call.

CVSS3: 5.5
debian
почти 14 лет назад

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initiali ...

CVSS3: 5.5
github
около 3 лет назад

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability for an ethtool ioctl call.

oracle-oval
больше 14 лет назад

ELSA-2011-0303: kernel security and bug fix update (MODERATE)

1.2 Low

CVSS2