Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-1000380
HistoryJun 17, 2017 - 6:29 p.m.

Information disclosure

2017-06-1718:29:00
PRIOn knowledge base
www.prio-n.com
11

4.9 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

sound/core/timer.c in the Linux kernel before 4.11.5 is vulnerable to a data race in the ALSA /dev/snd/timer driver resulting in local users being able to read information belonging to other users, i.e., uninitialized memory contents may be disclosed when a read and an ioctl happen at the same time.

CPENameOperatorVersion
linux_kernelle4.11.4