Security Advisory

CVE-2011-2707

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-05-24 23:00:00
Last updated 2024-08-06 23:08:23
Assigner redhat
State PUBLISHED

Description

The ptrace_setxregs function in arch/xtensa/kernel/ptrace.c in the Linux kernel before 3.1 does not validate user-space pointers, which allows local users to obtain sensitive information from kernel memory locations via a crafted PTRACE_SETXTREGS request.