Back to search
CVE-2012-3510
Published: Oct 3, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to obtain potentially sensitive information from kernel memory or cause a denial of service (system crash) via a taskstats TASKSTATS_CMD_ATTR_PID command.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
50811
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=849722
x_refsource_CONFIRM
RHSA-2012:1323
vendor-advisory
x_refsource_REDHAT
55144
vdb-entry
x_refsource_BID
[oss-security] 20120820 Re: CVE Request -- kernel: taskstats: use-after-free in xacct_add_tsk()
mailing-list
x_refsource_MLIST
1027602
vdb-entry
x_refsource_SECTRACK
http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.19
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now