Beveiligingsadvies

CVE-2011-2210

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-06-13 10:00:00
Laatst bijgewerkt 2024-08-06 22:53:17
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The osf_getsysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform does not properly restrict the data size for GSI_GET_HWRPB operations, which allows local users to obtain sensitive information from kernel memory via a crafted call.