CVE-2008-0009

Publication date

2008-02-12 20:00:00

Family

redhat

State

PUBLISHED

Description

The vmsplice_to_user function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which might allow local users to access arbitrary kernel memory locations.