kernel: tcf_fill_node() infoleak due to typo in 9ef1d4c7
Published Oct 19, 2009
2.1
LOWCVSS 2.0
EPSS 0.40%
Description
The tcf_fill_node function in net/sched/cls_api.c in the netlink subsystem in the Linux kernel 2.6.x before 2.6.32-rc5, and 2.4.37.6 and earlier, does not initialize a certain tcm__pad2 structure member, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors. NOTE: this issue exists because of an incomplete fix for CVE-2005-4881.
Affected products
No data.
Configuration 1
- ≤ 2.4.37.6
- ≥ 2.6.0 · < 2.6.32
- 2.6.32
- 2.6.32
- 2.6.32
- 2.6.32
- 2.6.32
Configuration 2
- 11.0
- 10
- 10
- 10
- 10
- 10
- 10
Configuration 3
- 6.06
- 8.04
- 8.10
- 9.04
- 9.10
Configuration 4
- 10
No data.
MRG for RHEL-5
kernel-rt-0:2.6.24.7-137.el5rt
Fixed · RHSA-2009:1540
Red Hat Enterprise Linux 4
kernel-0:2.6.9-89.0.15.EL
Fixed · RHSA-2009:1522
Red Hat Enterprise Linux 5
kernel-0:2.6.18-164.9.1.el5
Fixed · RHSA-2009:1670
| Product | Package | State | Advisory |
|---|---|---|---|
| MRG for RHEL-5 | kernel-rt-0:2.6.24.7-137.el5rt | Fixed | RHSA-2009:1540 |
| Red Hat Enterprise Linux 4 | kernel-0:2.6.9-89.0.15.EL | Fixed | RHSA-2009:1522 |
| Red Hat Enterprise Linux 5 | kernel-0:2.6.18-164.9.1.el5 | Fixed | RHSA-2009:1670 |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue is not planned to be fixed in Red Hat Enterprise Linux 3 due to this product being in Production 3 of its maintenance life-cycle, where only qualified security errata of important or critical impact are addressed. For further information about the Errata Support Policy, visit: https://access.redhat.com/support/policy/updates/errata/
References (28)
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=ad61df918c44316940404891d5082c63e79c256a x_refsource_CONFIRM
- http://lists.opensuse.org/opensuse-security-announce/2009-12/msg00002.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2009-12/msg00005.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00005.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.vmware.com/pipermail/security-announce/2010/000082.html mailing-listx_refsource_MLISTThird Party Advisory
- http://patchwork.ozlabs.org/patch/35412/ x_refsource_CONFIRMPatchThird Party Advisory
- http://secunia.com/advisories/37086 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/37909 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/38794 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/38834 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.32-rc5 x_refsource_CONFIRMBroken Link
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:329 vendor-advisoryx_refsource_MANDRIVAThird Party Advisory
- http://www.openwall.com/lists/oss-security/2009/10/14/1 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2009/10/14/2 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2009/10/15/1 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2009/10/15/3 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2009-1670.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.ubuntu.com/usn/usn-864-1 vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- http://www.vupen.com/english/advisories/2010/0528 vdb-entryx_refsource_VUPENThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2009-3612 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=528868 x_refsource_CONFIRMIssue TrackingPatchThird Party Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2009-3593 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2009-3612
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10395 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7557 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://rhn.redhat.com/errata/RHSA-2009-1540.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2009-3612
- https://www.redhat.com/archives/fedora-package-announce/2009-November/msg00190.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data