PT-2010-4846 · Linux+1 · Linux Kernel+1

Jeff Mahoney

·

Publicado

2010-09-21

·

Atualizado

2020-08-14

·

CVE-2010-3477

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.36-rc4
Description The issue is related to the tcf act police dump function in the network queueing functionality, which does not properly initialize certain structure members. This allows local users to obtain potentially sensitive information from kernel memory via vectors involving a dump operation.
Recommendations For Linux kernel versions prior to 2.6.36-rc4, update to version 2.6.36-rc4 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-3477
DSA-2126-1
RHSA-2010:0779
RHSA-2010:0839
RHSA-2010_0779
RHSA-2010_0839
RHSA-2011:0007
RHSA-2011:0330
RHSA-2011_0007

Produtos afetados

Linux Kernel
Red Hat