Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-5244
HistoryJun 27, 2016 - 10:59 a.m.

Design/Logic Flaw

2016-06-2710:59:00
PRIOn knowledge base
www.prio-n.com
5

6.3 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

75.8%

The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from kernel stack memory by reading an RDS message.

References

6.3 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

75.8%