net/ipv4/af_inet.c in Linux kernel 2.4 does not clear sockaddr_in.sin_zero before returning IPv4 socket names from the (1) getsockname, (2) getpeername, and (3) accept functions, which allows local users to obtain portions of potentially sensitive memory.
References
Configurations
History
21 Nov 2024, 00:08
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=linux-netdev&m=114148078223594&w=2 - | |
References | () http://secunia.com/advisories/19357 - | |
References | () http://secunia.com/advisories/20398 - | |
References | () http://secunia.com/advisories/21035 - | |
References | () http://secunia.com/advisories/22875 - | |
References | () http://www.kernel.org/git/?p=linux/kernel/git/marcelo/linux-2.4.git%3Ba=commit%3Bh=09d3b3dcfa80c9094f1748c1be064b9326c9ef2b - | |
References | () http://www.novell.com/linux/security/advisories/2006-05-31.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2006-0579.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2006-0580.html - | |
References | () http://www.securityfocus.com/archive/1/451404/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/451417/100/200/threaded - | |
References | () http://www.securityfocus.com/archive/1/451419/100/200/threaded - | |
References | () http://www.securityfocus.com/archive/1/451426/100/200/threaded - | |
References | () http://www.securityfocus.com/bid/17203 - | |
References | () http://www.vmware.com/download/esx/esx-202-200610-patch.html - | |
References | () http://www.vmware.com/download/esx/esx-213-200610-patch.html - | |
References | () http://www.vmware.com/download/esx/esx-254-200610-patch.html - | |
References | () http://www.vupen.com/english/advisories/2006/4502 - |
07 Nov 2023, 01:58
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
References | () http://secunia.com/advisories/21035 - | |
References | () http://www.vupen.com/english/advisories/2006/4502 - | |
References | () http://www.securityfocus.com/archive/1/451417/100/200/threaded - | |
References | () http://www.redhat.com/support/errata/RHSA-2006-0579.html - | |
References | () http://marc.info/?l=linux-netdev&m=114148078223594&w=2 - | |
References | () http://www.securityfocus.com/archive/1/451404/100/0/threaded - | |
References | () http://www.vmware.com/download/esx/esx-202-200610-patch.html - | |
References | () http://secunia.com/advisories/22875 - | |
References | () http://www.securityfocus.com/archive/1/451426/100/200/threaded - | |
References | () http://www.redhat.com/support/errata/RHSA-2006-0580.html - | |
References | () http://secunia.com/advisories/19357 - | |
References | () http://secunia.com/advisories/20398 - | |
References | () http://www.securityfocus.com/archive/1/451419/100/200/threaded - | |
References | () http://www.vmware.com/download/esx/esx-254-200610-patch.html - | |
References | () http://www.novell.com/linux/security/advisories/2006-05-31.html - | |
References | () http://www.vmware.com/download/esx/esx-213-200610-patch.html - | |
References | () http://www.securityfocus.com/bid/17203 - |
Information
Published : 2006-03-21 18:02
Updated : 2024-11-21 00:08
NVD link : CVE-2006-1342
Mitre link : CVE-2006-1342
CVE.ORG link : CVE-2006-1342
JSON object : View
Products Affected
linux
- linux_kernel
CWE