PT-2012-5462 · Linux+3 · Linux Kernel+3

Halfdog

·

Published

2012-10-19

·

Updated

2023-02-13

·

CVE-2012-4530

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.7.2
Description The issue concerns the load script function in fs/binfmt script.c, which does not properly handle recursion. This allows local users to obtain sensitive information from kernel stack memory via a crafted application.
Recommendations For versions prior to 3.7.2, update to version 3.7.2 or later to resolve the issue.

Exploit

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CESA-2013_0223
CVE-2012-4530
OPENSUSE-SU-2013_0396-1
RHSA-2013:0223
RHSA-2013:0566
RHSA-2013_0223
SUSE-SU-2013_0674-1
SUSE-SU-2015:0481-1
SUSE-SU-2015:0652-1
USN-1683-1
USN-1684-1
USN-1688-1
USN-1689-1
USN-1691-1
USN-1696-1
USN-1698-1
USN-1699-1
USN-1700-1
USN-1704-1

Affected Products

Centos
Linux Kernel
Red Hat
Suse