2.1
CVSSv2

CVE-2015-5697

Published: 31/08/2015 Updated: 21/09/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The get_bitmap_file function in drivers/md/md.c in the Linux kernel prior to 4.1.6 does not initialize a certain bitmap data structure, which allows local users to obtain sensitive information from kernel memory via a GET_BITMAP_FILE ioctl call.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leak CVE-2015-1333 Colin Ian King discovered a flaw in the add_key function of the Linux kernel's keyring subsystem A local user can exploit this flaw to cause a denial of service due to memory ex ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
The system could be made to expose sensitive information ...
Several security issues were fixed in the kernel ...
The system could be made to expose sensitive information ...
Several security issues were fixed in the kernel ...
A cross-boundary flaw was discovered in the Linux kernel software raid driver The driver accessed a disabled bitmap where only the first byte of the buffer was initialized to zero This meant that the rest of the request (up to 4095 bytes) was left and copied into user space An attacker could use this flaw to read private information from user ...