Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-4077
HistoryNov 29, 2010 - 4:00 p.m.

Session fixation

2010-11-2916:00:00
PRIOn knowledge base
www.prio-n.com
5

5.9 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

15.5%

The ntty_ioctl_tiocgicount function in drivers/char/nozomi.c in the Linux kernel 2.6.36.1 and earlier does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a TIOCGICOUNT ioctl call.

CPENameOperatorVersion
linux_kernelle2.6.36.1