PT-2009-6753 · Opensuse+2 · Intel-Iamt-Heci-Kmp-Debug+18

Eugene Teo

·

Published

1970-01-01

·

Updated

2023-02-13

·

CVE-2009-1192

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions dazuko-kmp-debug (affected versions not specified) kvm-kmp-trace (affected versions not specified) aufs-kmp-debug (affected versions not specified) ofed-kmp-debug (affected versions not specified) kqemu-kmp-debug (affected versions not specified) drbd-kmp-debug (affected versions not specified) ofed-kmp-trace (affected versions not specified) iscsitarget-kmp-trace (affected versions not specified) pcfclock-kmp-trace (affected versions not specified) intel-iamt-heci-kmp-debug (affected versions not specified) kqemu-kmp-trace (affected versions not specified) dazuko-kmp-trace (affected versions not specified) drbd-kmp-trace (affected versions not specified) iscsitarget-kmp-debug (affected versions not specified) pcfclock-kmp-debug (affected versions not specified) aufs-kmp-trace (affected versions not specified) intel-iamt-heci-kmp-trace (affected versions not specified) Linux kernel (affected versions prior to 2.6.30-rc3)
Description The issue involves multiple vulnerabilities in various packages of the openSUSE operating system, which can lead to a disruption of protected information. These vulnerabilities can be exploited remotely. Additionally, there is an issue with the Linux kernel's agp subsystem, where the agp generic alloc page and agp generic alloc pages functions in drivers/char/agp/generic.c do not zero out pages that may later be available to a user-space process, allowing local users to obtain sensitive information by reading these pages.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

BDU:2015-05202
BDU:2015-05203
BDU:2015-05204
BDU:2015-05205
BDU:2015-05206
BDU:2015-05207
BDU:2015-05208
BDU:2015-05209
BDU:2015-05210
BDU:2015-05211
BDU:2015-05212
BDU:2015-05213
BDU:2015-05214
BDU:2015-05215
BDU:2015-05216
BDU:2015-05217
BDU:2015-05218
CVE-2009-1192
DSA-1787-1
DSA-1794-1
DSA-1800-1
RHSA-2009:1081
RHSA-2009:1106
RHSA-2009:1132
RHSA-2009_1106
RHSA-2009_1132

Affected Products

Linux Kernel
Red Hat
Aufs-Kmp-Debug
Aufs-Kmp-Trace
Dazuko-Kmp-Debug
Dazuko-Kmp-Trace
Drbd-Kmp-Debug
Drbd-Kmp-Trace
Intel-Iamt-Heci-Kmp-Debug
Intel-Iamt-Heci-Kmp-Trace
Iscsitarget-Kmp-Debug
Iscsitarget-Kmp-Trace
Kqemu-Kmp-Debug
Kqemu-Kmp-Trace
Kvm-Kmp-Trace
Ofed-Kmp-Debug
Ofed-Kmp-Trace
Pcfclock-Kmp-Debug
Pcfclock-Kmp-Trace