Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-9900
HistoryAug 06, 2016 - 10:59 a.m.

Code injection

2016-08-0610:59:00
PRIOn knowledge base
www.prio-n.com
7

5.8 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

23.9%

The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not initialize a certain data structure, which allows local users to obtain sensitive information via a crafted application, aka Android internal bug 28803952 and Qualcomm internal bug CR570754.

CPENameOperatorVersion
androidle6.0.1
linux_kernelle4.7

5.8 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

23.9%