Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11334
HistoryJan 15, 2019 - 9:00 a.m.

Information Disclosure

2019-01-1509:00:24
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0

Percentile

0.4%

kernel-rt is vulnerable to information disclosure attacks. The vulnerability exists as the override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.

References