Linux Kernel with DCCP Support Memory Disclosure
时间:2007-03-28 来源:ming_nuaa
Linux Kernel DCCP Multiple Local Information Disclosure Vulnerabilities
The Linux kernel is prone to multiple vulnerabilities in its DCCP support. Exploiting these issues can allow local attackers to access privileged information.
An attacker may be able to obtain sensitive data that can potentially aid in further attacks.
Linux Kernel versions in the 2.6.20 and later branch are vulnerable to these issues. The following exploits are available:
Bugtraq ID: | 23162 |
Class: | Design Error |
CVE: | |
Remote: | No |
Local: | Yes |
Published: | Mar 27 2007 12:00AM |
Updated: | Mar 27 2007 11:13PM |
Credit: | Robert Swiecki <[email protected]> discovered these vulnerabilities. |
Vulnerable: |
Linux kernel 2.6.20 .4 Linux kernel 2.6.20 Linux kernel 2.6.20.3 Linux kernel 2.6.20.2 Linux kernel 2.6.20.1 |
An attacker may be able to obtain sensitive data that can potentially aid in further attacks.
Linux Kernel versions in the 2.6.20 and later branch are vulnerable to these issues. The following exploits are available:
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
相关阅读 更多 +