TECHNICAL BULLETIN
| PROBLEM: | The Linux Kernel is prone to an information-disclosure vulnerability because it fails to properly initialize certain memory before using using it in a user-accessible operation. |
| PLATFORM: | Ubuntu Linux 8.10 sparc and all previous versions S.u.S.E. SLES 11 DEBUGINFO and all previous versions rPath Linux 2 and all previous versions RedHat Enterprise Linux 5 server and all previous versions MandrakeSoft Linux Mandrake 2009.0 and all previous versions Versions prior to Linux Kernel 2.6.28.8 are vulnerable Debian Linux 5.0 sparc and all previous versions |
| ABSTRACT: | Specifically, the vulnerability resides in the 'sock_getsockopt()' function of the 'net/core/sock.c' source file. The variable 'optval v.val' isn't initialized and four bytes of data may be directly returned to an attacker if the SO_BSDCOMPAT option is set. |
| LINKS: | |
| DOE-CIRC BULLETIN: | http://www.doecirc.energy.gov/bulletins/t-145.shtml |
| OTHER LINKS: | Security Focus http://www.securityfocus.com/bid/33846/info Juniper http://www.juniper.net/security/auto/vulnerabilities/vuln33846.html |
| CVE: | CVE-2009-0676 |
| IMPACT ASSESSMENT: | This risk is medium. Successful exploits will allow attackers to view portions of kernel memory. |