CVE-2010-4078

Publication date

2010-11-29 15:00:00

Family

mitre

State

PUBLISHED

Description

The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FBIOGET_VBLANK ioctl call.