Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24187
HistoryApr 10, 2020 - 12:48 a.m.

Information Disclosure

2020-04-1000:48:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.0004 Low

EPSS

Percentile

5.1%

kernel is vulnerable to information disclosure. A flaw was found in the tcf_act_police_dump() function in the Linux kernel network traffic policing implementation. A data structure in tcf_act_police_dump() was not initialized properly before being copied to user-space. A local, unprivileged user could use this flaw to cause an information leak.