arch/x86_64/lib/copy_user.S in the Linux kernel before 2.6.19 on some AMD64 systems does not erase destination memory locations after an exception during kernel memory copy, which allows local users to obtain sensitive information.
https://exchange.xforce.ibmcloud.com/vulnerabilities/43558
https://bugzilla.redhat.com/show_bug.cgi?id=451271
http://www.ubuntu.com/usn/usn-625-1
http://www.securitytracker.com/id?1020364
http://www.securityfocus.com/bid/29943
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11571
https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-2722
http://www.redhat.com/support/errata/RHSA-2008-0585.html
http://www.redhat.com/support/errata/RHSA-2008-0519.html
http://www.mandriva.com/security/advisories?name=MDVSA-2008:174
http://secunia.com/advisories/31628
http://secunia.com/advisories/31551
http://secunia.com/advisories/31107
http://secunia.com/advisories/30850