The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the btrfs functionality in the Linux kernel 2.6.29 up to and including 2.6.32, and possibly other versions, does not ensure that a cloned file descriptor has been opened for reading, which allows local users to read sensitive information from a write-only file descriptor.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linux linux kernel 2.6.31 |
||
linux linux kernel 2.6.29.3 |
||
linux linux kernel 2.6.31.9 |
||
linux linux kernel 2.6.31.3 |
||
linux linux kernel 2.6.30.10 |
||
linux linux kernel 2.6.31.12 |
||
linux linux kernel 2.6.29 |
||
linux linux kernel 2.6.31.4 |
||
linux linux kernel 2.6.32 |
||
linux linux kernel 2.6.31.6 |
||
linux linux kernel 2.6.31.10 |
||
linux linux kernel 2.6.31.1 |
||
linux linux kernel 2.6.30.7 |
||
linux linux kernel 2.6.29.4 |
||
linux linux kernel 2.6.31.7 |
||
linux linux kernel 2.6.30.8 |
||
linux linux kernel 2.6.30.9 |
||
linux linux kernel 2.6.29.1 |
||
linux linux kernel 2.6.30.4 |
||
linux linux kernel 2.6.29.6 |
||
linux linux kernel 2.6.30.2 |
||
linux linux kernel 2.6.30.6 |
||
linux linux kernel 2.6.30.1 |
||
linux linux kernel 2.6.31.5 |
||
linux linux kernel 2.6.31.11 |
||
linux linux kernel 2.6.29.2 |
||
linux linux kernel 2.6.31.13 |
||
linux linux kernel 2.6.31.8 |
||
linux linux kernel 2.6.31.2 |
||
linux linux kernel 2.6.30.5 |
||
linux linux kernel 2.6.30 |
||
linux linux kernel 2.6.30.3 |
||
linux linux kernel 2.6.29.5 |