CVE-2009-3001

MEDIUM
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel 2.6.31-rc7 and earlier does not initialize a certain data structure, which allows local users to read the contents of some kernel memory locations by calling getsockname on an AF_LLC socket.

References

http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=28e9fc592cb8c7a43e4d3147b38be6032a0e81bc

http://jon.oberheide.org/files/llc-getsockname-leak.c

http://secunia.com/advisories/37105

http://www.exploit-db.com/exploits/9513

http://www.openwall.com/lists/oss-security/2009/08/26/1

http://www.securityfocus.com/bid/36126

http://www.ubuntu.com/usn/USN-852-1

https://bugzilla.redhat.com/show_bug.cgi?id=519305

https://exchange.xforce.ibmcloud.com/vulnerabilities/52732

Details

Source: MITRE

Published: 2009-08-28

Updated: 2018-11-16

Type: CWE-200

Risk Information

CVSS v2

Base Score: 4.9

Vector: AV:L/AC:L/Au:N/C:C/I:N/A:N

Impact Score: 6.9

Exploitability Score: 3.9

Severity: MEDIUM

Tenable Plugins

View all (6 total)

IDNameProductFamilySeverity
60688Scientific Linux Security Update : kernel on SL3.x i386/x86_64NessusScientific Linux Local Security Checks
high
44794Debian DSA-1929-1 : linux-2.6 - privilege escalation/denial of service/sensitive memory leakNessusDebian Local Security Checks
high
44793Debian DSA-1928-1 : linux-2.6.24 - privilege escalation/denial of service/sensitive memory leakNessusDebian Local Security Checks
high
44780Debian DSA-1915-1 : linux-2.6 - privilege escalation/denial of service/sensitive memory leakNessusDebian Local Security Checks
high
42209Ubuntu 6.06 LTS / 8.04 LTS / 8.10 / 9.04 : linux, linux-source-2.6.15 vulnerabilities (USN-852-1)NessusUbuntu Local Security Checks
high
41973Fedora 10 : kernel-2.6.27.35-170.2.94.fc10 (2009-10165)NessusFedora Local Security Checks
high