Security Advisory

CVE-2011-2480

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-27 18:53:37
Last updated 2024-08-06 23:00:33
Assigner redhat
State PUBLISHED

Description

Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local unprivileged user to cause the kernel to copy large amounts of kernel memory back to the user, disclosing potentially sensitive information.