Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24184
HistoryApr 10, 2020 - 12:48 a.m.

Information Disclosure

2020-04-1000:48:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

20.3%

kernel is vulnerable to information disclosure. A flaw was found in the xfs_ioc_fsgetxattr() function in the Linux kernel XFS file system implementation. A data structure in xfs_ioc_fsgetxattr() was not initialized properly before being copied to user-space. A local, unprivileged user could use this flaw to cause an information leak.

References