Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-1446
HistoryJan 18, 2014 - 10:55 p.m.

Design/Logic Flaw

2014-01-1822:55:00
PRIOn knowledge base
www.prio-n.com
6

6.1 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.1%

The yam_ioctl function in drivers/net/hamradio/yam.c in the Linux kernel before 3.12.8 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability for an SIOCYAMGCFG ioctl call.

References

6.1 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.1%