PT-2011-2920 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Published

2011-06-22

·

Updated

2023-02-13

·

CVE-2011-1173

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.39
Description The issue allows remote attackers to obtain potentially sensitive information from kernel stack memory by reading uninitialized data in the ah field of an Acorn Universal Networking (AUN) packet. This is due to a problem in the econet sendmsg function in net/econet/af econet.c on the x86 64 platform.
Recommendations For Linux kernel versions prior to 2.6.39, update to version 2.6.39 or later to resolve the issue.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2011-1173
DSA-2240-1
DSA-2264-1

Affected Products

Linux Kernel
Suse