PT-2012-4774 · Linux+2 · Linux Kernel+2

Alexander Peslyak

·

Published

2012-10-02

·

Updated

2023-02-13

·

CVE-2012-3510

CVSS v2.0

5.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.19
Description A use-after-free issue in the xacct add tsk function allows local users to potentially obtain sensitive information from kernel memory or cause a denial of service, resulting in a system crash, by utilizing a taskstats TASKSTATS CMD ATTR PID command.
Recommendations For versions prior to 2.6.19, update to version 2.6.19 or later to resolve the issue.

Exploit

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2012-3510
RHSA-2012:1323
RHSA-2012_1323

Affected Products

Linux Kernel
Red Hat
Suse