Total vulnerabilities in the database
The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.
Software | From | Fixed in |
---|---|---|
linux / linux_kernel | 2.6.31-rc4 | 2.6.31-rc4.x |
linux / linux_kernel | 2.6.31-rc1 | 2.6.31-rc1.x |
linux / linux_kernel | 2.6.31-rc6 | 2.6.31-rc6.x |
linux / linux_kernel | 2.6.31-rc5 | 2.6.31-rc5.x |
linux / linux_kernel | 2.6.31-rc7 | 2.6.31-rc7.x |
linux / linux_kernel | 2.6.31-rc8 | 2.6.31-rc8.x |
linux / linux_kernel | 2.6.31-rc3 | 2.6.31-rc3.x |
linux / linux_kernel | 2.6.31-rc2 | 2.6.31-rc2.x |
linux / linux_kernel | 2.6.31 | 2.6.31.x |
linux / linux_kernel | 2.4.0 | 2.4.37.6 |
linux / linux_kernel | 2.6.0 | 2.6.31 |
canonical / ubuntu_linux | 9.04 | 9.04.x |
canonical / ubuntu_linux | 8.10 | 8.10.x |
canonical / ubuntu_linux | 9.10 | 9.10.x |
canonical / ubuntu_linux | 8.04 | 8.04.x |
canonical / ubuntu_linux | 6.06 | 6.06.x |
redhat / enterprise_linux_server | 5.0 | 5.0.x |
redhat / enterprise_linux_workstation | 5.0 | 5.0.x |
redhat / enterprise_linux_desktop | 5.0 | 5.0.x |
redhat / enterprise_linux_eus | 5.4 | 5.4.x |