Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19520
HistoryMay 16, 2019 - 3:18 a.m.

Memory Corruption And Code Execution

2019-05-1603:18:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
33

0.0004 Low

EPSS

Percentile

10.1%

Linux kernel is vulnerable to memory corruption vulnerability. The vulnerability exists in the function cdrom_ioctl_media_changed of the file drivers/cdrom/cdrom.c. A privileged user could use an incorrect bounds check in the CDROM driver CDROM_MEDIA_CHANGED ioctl to read out some kernel memory contents.

References