Description
The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an ioctl call.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2110-1 | New Linux 2.6.26 packages fix several issues |
EUVD |
EUVD-2010-3080 | The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an ioctl call. |
Ubuntu USN |
USN-1000-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1074-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1074-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1083-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-1093-1 | Linux Kernel vulnerabilities (Marvell Dove) |
References
History
No history.
Subscriptions
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T02:55:46.788Z
Reserved: 2010-08-20T00:00:00.000Z
Link: CVE-2010-3078
No data.
Status : Modified
Published: 2010-09-21T18:00:05.893
Modified: 2026-04-29T01:13:23.040
Link: CVE-2010-3078
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN