CVE-2017-14156
CVSS v3.0
5.5 (Medium)
CVSS v2.0
2.1 (Low)
EPSS
0.04 % (5th)
Affected Products
1
Advisories
6
The atyfb_ioctl function in drivers/video/fbdev/aty/atyfb_base.c in the Linux kernel through 4.12.10 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading locations associated with padding bytes.
Weaknesses
- CWE-200
- Exposure of Sensitive Information to an Unauthorized Actor
- CVE Status
- PUBLISHED
- CNA
- MITRE
- Published Date
-
2017-09-05 17:29:00
(7 years ago) - Updated Date
-
2018-03-16 01:29:05
(6 years ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...