Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19505
HistoryMay 16, 2019 - 3:18 a.m.

Memory Corruption

2019-05-1603:18:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0

Percentile

10.1%

Linux kernel is vulnerable to memory corruption attacks. This exists in the get_rock_ridge_filename function in fs/isofs/rock.c. This occurs because of the payloads of NM entries are not supposed to contain NULL which allows local users to obtain sensitive information from kernel memory or possibly have unspecified other impact via a crafted isofs filesystem.

References