Security Advisory

CVE-2016-4913

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-05-23 10:00:00
Last updated 2024-08-06 00:46:39
Assigner debian
CVSS score not scored
State PUBLISHED

Description

The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have unspecified other impact via a crafted isofs filesystem.