2.1
CVSSv2

CVE-2013-2234

Published: 04/07/2013 Updated: 13/02/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the Linux kernel prior to 3.10 do not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message from the notify interface of an IPSec key_socket.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 3.9.0

linux linux kernel 3.2.21

linux linux kernel

linux linux kernel 3.4.30

linux linux kernel 3.4.4

linux linux kernel 3.0.25

linux linux kernel 3.1.2

linux linux kernel 3.4.11

linux linux kernel 3.0

linux linux kernel 3.2.19

linux linux kernel 3.0.22

linux linux kernel 3.2.23

linux linux kernel 3.4.26

linux linux kernel 3.4.13

linux linux kernel 3.6.7

linux linux kernel 3.0.5

linux linux kernel 3.5.2

linux linux kernel 3.4.1

linux linux kernel 3.2.18

linux linux kernel 3.0.68

linux linux kernel 3.3

linux linux kernel 3.0.38

linux linux kernel 3.8.2

linux linux kernel 3.1

linux linux kernel 3.4

linux linux kernel 3.0.63

linux linux kernel 3.0.46

linux linux kernel 3.0.47

linux linux kernel 3.0.48

linux linux kernel 3.2.5

linux linux kernel 3.2.26

linux linux kernel 3.0.18

linux linux kernel 3.0.6

linux linux kernel 3.0.36

linux linux kernel 3.4.23

linux linux kernel 3.0.35

linux linux kernel 3.0.11

linux linux kernel 3.0.58

linux linux kernel 3.4.28

linux linux kernel 3.0.34

linux linux kernel 3.8.7

linux linux kernel 3.9.8

linux linux kernel 3.5.7

linux linux kernel 3.7.9

linux linux kernel 3.0.32

linux linux kernel 3.2

linux linux kernel 3.0.52

linux linux kernel 3.0.51

linux linux kernel 3.4.18

linux linux kernel 3.4.6

linux linux kernel 3.2.16

linux linux kernel 3.4.12

linux linux kernel 3.0.57

linux linux kernel 3.7.7

linux linux kernel 3.3.2

linux linux kernel 3.0.19

linux linux kernel 3.2.27

linux linux kernel 3.4.27

linux linux kernel 3.0.37

linux linux kernel 3.0.4

linux linux kernel 3.9.2

linux linux kernel 3.9

linux linux kernel 3.3.8

linux linux kernel 3.9.7

linux linux kernel 3.8.0

linux linux kernel 3.0.27

linux linux kernel 3.3.3

linux linux kernel 3.4.5

linux linux kernel 3.2.11

linux linux kernel 3.7.1

linux linux kernel 3.0.42

linux linux kernel 3.0.23

linux linux kernel 3.0.62

linux linux kernel 3.0.49

linux linux kernel 3.7.3

linux linux kernel 3.2.10

linux linux kernel 3.0.8

linux linux kernel 3.2.14

linux linux kernel 3.4.14

linux linux kernel 3.3.4

linux linux kernel 3.8.6

linux linux kernel 3.2.29

linux linux kernel 3.0.64

linux linux kernel 3.0.40

linux linux kernel 3.4.19

linux linux kernel 3.7

linux linux kernel 3.0.33

linux linux kernel 3.4.9

linux linux kernel 3.4.29

linux linux kernel 3.0.28

linux linux kernel 3.5.6

linux linux kernel 3.6.2

linux linux kernel 3.3.6

linux linux kernel 3.6.9

linux linux kernel 3.2.25

linux linux kernel 3.4.3

linux linux kernel 3.4.2

linux linux kernel 3.2.4

linux linux kernel 3.6.6

linux linux kernel 3.8.5

linux linux kernel 3.7.8

linux linux kernel 3.4.31

linux linux kernel 3.4.15

linux linux kernel 3.0.54

linux linux kernel 3.7.6

linux linux kernel 3.0.13

linux linux kernel 3.0.55

linux linux kernel 3.2.9

linux linux kernel 3.0.10

linux linux kernel 3.6.4

linux linux kernel 3.2.15

linux linux kernel 3.0.1

linux linux kernel 3.1.6

linux linux kernel 3.6.10

linux linux kernel 3.2.20

linux linux kernel 3.9.5

linux linux kernel 3.2.24

linux linux kernel 3.6.1

linux linux kernel 3.4.24

linux linux kernel 3.2.6

linux linux kernel 3.2.2

linux linux kernel 3.0.17

linux linux kernel 3.1.3

linux linux kernel 3.1.9

linux linux kernel 3.6

linux linux kernel 3.0.44

linux linux kernel 3.0.16

linux linux kernel 3.5.5

linux linux kernel 3.2.13

linux linux kernel 3.0.21

linux linux kernel 3.0.7

linux linux kernel 3.0.61

linux linux kernel 3.4.10

linux linux kernel 3.4.25

linux linux kernel 3.9.3

linux linux kernel 3.1.5

linux linux kernel 3.1.8

linux linux kernel 3.2.1

linux linux kernel 3.2.7

linux linux kernel 3.5.3

linux linux kernel 3.0.20

linux linux kernel 3.0.24

linux linux kernel 3.6.3

linux linux kernel 3.3.5

linux linux kernel 3.4.8

linux linux kernel 3.5.4

linux linux kernel 3.0.15

linux linux kernel 3.0.45

linux linux kernel 3.2.30

linux linux kernel 3.8.8

linux linux kernel 3.0.39

linux linux kernel 3.0.2

linux linux kernel 3.6.11

linux linux kernel 3.4.20

linux linux kernel 3.7.4

linux linux kernel 3.0.67

linux linux kernel 3.9.6

linux linux kernel 3.0.59

linux linux kernel 3.5.1

linux linux kernel 3.0.60

linux linux kernel 3.1.7

linux linux kernel 3.1.1

linux linux kernel 3.7.2

linux linux kernel 3.0.56

linux linux kernel 3.8.1

linux linux kernel 3.3.7

linux linux kernel 3.6.5

linux linux kernel 3.7.5

linux linux kernel 3.0.12

linux linux kernel 3.2.22

linux linux kernel 3.7.10

linux linux kernel 3.2.17

linux linux kernel 3.9.4

linux linux kernel 3.8.3

linux linux kernel 3.4.16

linux linux kernel 3.4.22

linux linux kernel 3.2.8

linux linux kernel 3.8.4

linux linux kernel 3.1.10

linux linux kernel 3.0.66

linux linux kernel 3.3.1

linux linux kernel 3.0.3

linux linux kernel 3.0.65

linux linux kernel 3.0.53

linux linux kernel 3.0.9

linux linux kernel 3.0.26

linux linux kernel 3.1.4

linux linux kernel 3.4.32

linux linux kernel 3.0.43

linux linux kernel 3.0.30

linux linux kernel 3.9.1

linux linux kernel 3.0.31

linux linux kernel 3.0.29

linux linux kernel 3.0.50

linux linux kernel 3.2.12

linux linux kernel 3.4.17

linux linux kernel 3.2.28

linux linux kernel 3.6.8

linux linux kernel 3.0.14

linux linux kernel 3.4.7

linux linux kernel 3.4.21

linux linux kernel 3.2.3

linux linux kernel 3.0.41

Vendor Advisories

Synopsis Important: kernel-rt security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel-rt packages that fix several security issues and multiplebugs are now available for Red Hat Enterprise MRG 23The Red Hat Security Response Team has rated this update as havingimportant ...
Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix multiple security issues and several bugsare now available for Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as havingimportant secur ...
Synopsis Important: Red Hat Enterprise Linux 6 kernel update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix multiple security issues, address severalhundred bugs, and add numerous enhancements are now available as part ofthe ongoing support and maintenance of Red Hat Enter ...
Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service, information leak or privilege escalation The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2013-1059 Chanam Park reported an issue in the Ceph distributed storage system Remote users can cause a den ...
The bt_sock_recvmsg function in net/bluetooth/af_bluetoothc in the Linux kernel before 39-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call The udf_encode_fh function in fs/udf/nameic in the Linux kerne ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_keyc in the Linux kernel before 310 do not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message from the notify interface of an IPSec key_socket ...