PT-2012-5415 · Linux · Linux Kernel

Mikulas Patocka

·

Publicado

2012-10-10

·

Atualizado

2023-02-13

·

CVE-2012-4467

CVSS v2.0

6.6

Média

VetorAV:L/AC:L/Au:N/C:C/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.5.4
Description The issue affects the Linux kernel, where the do siocgstamp and do siocgstampns functions in net/socket.c use an incorrect argument order. This allows local users to obtain sensitive information from kernel memory or cause a denial of service, resulting in a system crash, via a crafted ioctl call.
Recommendations For Linux kernel versions prior to 3.5.4, update to version 3.5.4 or later to resolve the issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-4467

Produtos afetados

Linux Kernel