The x25_negotiate_facilities function in net/x25/x25_facilities.c in the Linux kernel prior to 4.5.5 does not properly initialize a certain data structure, which allows malicious users to obtain sensitive information from kernel stack memory via an X.25 Call Request.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linux linux kernel |
||
canonical ubuntu linux 12.04 |
||
canonical ubuntu linux 15.10 |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 14.04 |