Total vulnerabilities in the database
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
Software | From | Fixed in |
---|---|---|
linux / linux_kernel | - | 3.14.6 |
canonical / ubuntu_linux | 13.10 | 13.10.x |
canonical / ubuntu_linux | 12.04 | 12.04.x |
suse / suse_linux_enterprise_desktop | 11-sp3 | 11-sp3.x |
suse / suse_linux_enterprise_server | 11-sp3 | 11-sp3.x |
suse / linux_enterprise_high_availability_extension | 11-sp3 | 11-sp3.x |