PT-2012-1547 · Linux · Linux Kernel

Dan Rosenberg

·

Published

2012-06-13

·

Updated

2023-02-13

·

CVE-2011-2210

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.39.4
Description The issue is related to the osf getsysinfo function in the Linux kernel, which does not properly restrict the data size for GSI GET HWRPB operations. This allows local users to obtain sensitive information from kernel memory via a crafted call.
Recommendations For Linux kernel versions prior to 2.6.39.4, update to version 2.6.39.4 or later to resolve the issue.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2011-2210

Affected Products

Linux Kernel