arch/x86_64/lib/copy_user.S in the Linux kernel before 2.6.19 on some AMD64 systems does not erase destination memory locations after an exception during kernel memory copy, which allows local users to obtain sensitive information.
References
Configurations
Information
Published : 2008-06-30 15:41
Updated : 2022-02-03 11:57
NVD link : CVE-2008-2729
Mitre link : CVE-2008-2729
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
linux
- linux_kernel