Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2141

Опубликовано: 17 апр. 2013
Источник: redhat
CVSS2: 2.1
EPSS Низкий

Описание

The do_tkill function in kernel/signal.c in the Linux kernel before 3.8.9 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted application that makes a (1) tkill or (2) tgkill system call.

Дополнительная информация

Статус:

Low
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=970873Kernel: signal: information leak in tkill/tgkill

EPSS

Процентиль: 45%
0.00593
Низкий

2.1 Low

CVSS2

Связанные уязвимости

ubuntu
около 13 лет назад

The do_tkill function in kernel/signal.c in the Linux kernel before 3.8.9 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted application that makes a (1) tkill or (2) tgkill system call.

nvd
около 13 лет назад

The do_tkill function in kernel/signal.c in the Linux kernel before 3.8.9 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted application that makes a (1) tkill or (2) tgkill system call.

debian
около 13 лет назад

The do_tkill function in kernel/signal.c in the Linux kernel before 3. ...

github
около 4 лет назад

The do_tkill function in kernel/signal.c in the Linux kernel before 3.8.9 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted application that makes a (1) tkill or (2) tgkill system call.

oracle-oval
больше 12 лет назад

ELSA-2013-2589: unbreakable enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 45%
0.00593
Низкий

2.1 Low

CVSS2