VDB
CVE-2008-2729
CVE-2008-2729
PUBLISHED
CVSS 4.900000095367432 MEDIUM
arch/x86_64/lib/copy_user.S in the Linux kernel before 2.6.19 on some AMD64 systems does not erase destination memory locations after an exception during kernel memory copy, which allows local users to obtain sensitive information.
EPSS 0.57% · 45.1th percentile
Risk Scores
CVSS 2.0
4.900000095367432
EPSS Score
0.57%
45.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| linux | linux_kernel | 0 |
| n/a | n/a | n/a |
Timeline
- Jun 30, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 22, 2022 EPSS Score
- Jul 15, 2022 EPSS Score
- Sep 6, 2022 EPSS Score
- Oct 30, 2022 EPSS Score
- Dec 22, 2022 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 7, 2023 EPSS Score
- May 31, 2023 EPSS Score
References
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commitdiff%3Bh=3022d734a54cbd2b65eea9a024564821101b4a9a%3Bhp=f0f4c3432e5e1087b3a8c0e6bd4113d3c37497ff url
- RHSA-2008:0519 vendor-advisory
- linux-kernel-destination-info-disclosure(43558) vdb
- oval:org.mitre.oval:def:11571 vdb
- 30849 third-party-advisory
- 1020364 vdb
- RHSA-2008:0585 vendor-advisory
- MDVSA-2008:174 vendor-advisory
- 31107 third-party-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=451271 url
- USN-625-1 vendor-advisory
- DSA-1630 vendor-advisory
- 31551 third-party-advisory
- 30850 third-party-advisory
- 29943 vdb
- 31628 third-party-advisory
- RHSA-2008:0508 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2008-2729 advisory
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=3022d734a54cbd2b65eea9a024564821101b4a9a;hp=f0f4c3432e5e1087b3a8c0e6bd4113d3c37497ff url