net/ipv4/af_inet.c in Linux kernel 2.4 does not clear sockaddr_in.sin_zero before returning IPv4 socket names from the (1) getsockname, (2) getpeername, and (3) accept functions, which allows local users to obtain portions of potentially sensitive memory.
References
Configurations
Information
Published : 2006-03-21 10:02
Updated : 2018-10-18 09:32
NVD link : CVE-2006-1342
Mitre link : CVE-2006-1342
JSON object : View
CWE
Products Affected
linux
- linux_kernel