Security Advisory

CVE-2014-3180

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-06 19:22:03
Last updated 2024-08-06 10:35:57
Assigner Chrome
State PUBLISHED

Description

In kernel/compat.c in the Linux kernel before 3.17, as used in Google Chrome OS and other products, there is a possible out-of-bounds read. restart_syscall uses uninitialized data when restarting compat_sys_nanosleep. NOTE: this is disputed because the code path is unreachable