[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2014-1738Date: (C)2014-05-15   (M)2024-04-11


The raw_cmd_copyout function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly restrict access to certain pointers during processing of an FDRAWCMD ioctl call, which allows local users to obtain sensitive information from kernel heap memory by leveraging write access to a /dev/fd device.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 2.1
Exploit Score: 3.9
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: NONE
Availability: NONE
  
Reference:
-1030474
-59262
-59309
-59406
-59599
-67302
DSA-2926
DSA-2928
RHSA-2014:0800
RHSA-2014:0801
SUSE-SU-2014:0667
SUSE-SU-2014:0683
http://www.openwall.com/lists/oss-security/2014/05/09/2
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=2145e15e0557a01b9195d1c7199a1b92cb9be81f
http://linux.oracle.com/errata/ELSA-2014-0771.html
http://linux.oracle.com/errata/ELSA-2014-3043.html
https://bugzilla.redhat.com/show_bug.cgi?id=1094299
https://github.com/torvalds/linux/commit/2145e15e0557a01b9195d1c7199a1b92cb9be81f

CPE    3
cpe:/o:debian:debian_linux:7.0
cpe:/o:linux:linux_kernel
cpe:/o:debian:debian_linux:6.0
CWE    1
CWE-200
OVAL    58
oval:org.secpod.oval:def:107833
oval:org.secpod.oval:def:107916
oval:org.secpod.oval:def:107154
oval:org.secpod.oval:def:107666
...

© SecPod Technologies