| Severity : |
Low
|
| Published : |
2010-09-21
|
| Modified : |
2012-03-19
|
| Base Score : |
2.1
|
| Details : |
The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel memory via vectors involving a dump operation. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2942.
|
| Product/Version : |
MVL6 Kernel 2.6.27
Professional PRO 5.0
Professional PRO 5.0
CGE 5.x
Mobilinux 5.x
|
|
CVE Vulnerabilities List CVE-2010