Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:18250
HistoryMay 02, 2019 - 6:36 a.m.

Information Disclosure

2019-05-0206:36:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.0004 Low

EPSS

Percentile

5.1%

Linux kernel is vulnerable to information disclosure. The vulnerability exists because of incorrect error handling in the set_mempolicy() and mbind() compat syscalls in β€˜mm/mempolicy.c’ in the Linux kernel. Local users could obtain sensitive information from uninitialized stack data by triggering failure of a certain bitmap operation.

References