The help function in net/netfilter/nf_nat_irc.c in the Linux kernel before 3.12.8 allows remote attackers to obtain sensitive information from kernel memory by establishing an IRC DCC session in which incorrect packet data is transmitted during use of the NAT mangle feature.
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.12.8
http://www.openwall.com/lists/oss-security/2014/01/28/3
http://www.ubuntu.com/usn/USN-2137-1
http://www.ubuntu.com/usn/USN-2140-1
http://www.ubuntu.com/usn/USN-2158-1
https://bugzilla.redhat.com/show_bug.cgi?id=1058748
https://github.com/torvalds/linux/commit/2690d97ade05c5325cbf7c72b94b90d265659886
OR
OR
ID | Name | Product | Family | Severity |
---|---|---|---|---|
127146 | NewStart CGSL MAIN 5.04 : kernel Multiple Vulnerabilities (NS-SA-2019-0004) | Nessus | NewStart CGSL Local Security Checks | critical |
124803 | EulerOS Virtualization 3.0.1.0 : kernel (EulerOS-SA-2019-1479) | Nessus | Huawei Local Security Checks | critical |
124798 | EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1474) | Nessus | Huawei Local Security Checks | high |
99163 | OracleVM 3.3 : Unbreakable / etc (OVMSA-2017-0057) (Dirty COW) | Nessus | OracleVM Local Security Checks | critical |
77355 | Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2014-3070) | Nessus | Oracle Linux Local Security Checks | high |
76674 | RHEL 6 : MRG (RHSA-2014:0439) | Nessus | Red Hat Local Security Checks | critical |
75364 | openSUSE Security Update : kernel (openSUSE-SU-2014:0677-1) | Nessus | SuSE Local Security Checks | critical |
75363 | openSUSE Security Update : kernel (openSUSE-SU-2014:0678-1) | Nessus | SuSE Local Security Checks | critical |
73288 | Ubuntu 12.04 LTS : linux-lts-raring vulnerabilities (USN-2158-1) | Nessus | Ubuntu Local Security Checks | medium |
72902 | Ubuntu 13.10 : linux vulnerabilities (USN-2140-1) | Nessus | Ubuntu Local Security Checks | medium |
72900 | Ubuntu 12.04 LTS : linux-lts-saucy vulnerabilities (USN-2137-1) | Nessus | Ubuntu Local Security Checks | medium |