TROYANOSYVIRUS
Volver a CVEs

CVE-2013-3224

N/A

Descripcion

The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado4/22/2013
Ultima modificacion4/29/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

linux:linux_kernel

Debilidades (CWE)

CWE-200

Referencias

http://rhn.redhat.com/errata/RHSA-2013-1051.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2013/04/14/3(af854a3a-2127-422b-91ae-364da2661108)
http://www.ubuntu.com/usn/USN-1837-1(af854a3a-2127-422b-91ae-364da2661108)
https://lkml.org/lkml/2013/4/14/107(af854a3a-2127-422b-91ae-364da2661108)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.