Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 1 min 101 bronnen 3 kritiek 8 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2014-2568

LOW · 2.9 CVSS Gepubliceerd: CWE-416

Beschrijving

Use-after-free vulnerability in the nfqnl_zcopy function in net/netfilter/nfnetlink_queue_core.c in the Linux kernel through 3.13.6 allows attackers to obtain sensitive information from kernel memory by leveraging the absence of a certain orphaning operation. NOTE: the affected code was moved to the skb_zerocopy function in net/core/skbuff.c before the vulnerability was announced.

Vendors

Linux Canonical

Affected products

Linux Kernel Ubuntu Linux

References