CVE-2008-2729

EUVD-2008-2722
arch/x86_64/lib/copy_user.S in the Linux kernel before 2.6.19 on some AMD64 systems does not erase destination memory locations after an exception during kernel memory copy, which allows local users to obtain sensitive information.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.9 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
Affected Products (NVD)
VendorProductVersion
linuxlinux_kernel
𝑥
< 2.6.19
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
dapper
dne
edgy
dne
feisty
dne
gutsy
dne
hardy
not-affected
linux-source-2.6.15
dapper
Fixed 2.6.15-52.69
released
edgy
dne
feisty
dne
gutsy
dne
hardy
dne
linux-source-2.6.17
dapper
dne
edgy
not-affected
feisty
dne
gutsy
dne
hardy
dne
linux-source-2.6.20
dapper
dne
edgy
dne
feisty
not-affected
gutsy
dne
hardy
dne
linux-source-2.6.22
dapper
dne
edgy
dne
feisty
dne
gutsy
not-affected
hardy
dne
References