The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the btrfs functionality in the Linux kernel 2.6.29 through 2.6.32, and possibly other versions, does not ensure that a cloned file descriptor has been opened for reading, which allows local users to read sensitive information from a write-only file descriptor.
Advisories
Source ID Title
EUVD EUVD EUVD-2010-1657 The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the btrfs functionality in the Linux kernel 2.6.29 through 2.6.32, and possibly other versions, does not ensure that a cloned file descriptor has been opened for reading, which allows local users to read sensitive information from a write-only file descriptor.
Ubuntu USN Ubuntu USN USN-966-1 Linux kernel vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-07T01:28:43.266Z

Reserved: 2010-04-29T00:00:00Z

Link: CVE-2010-1636

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2010-06-08T00:30:01.397

Modified: 2025-04-11T00:51:21.963

Link: CVE-2010-1636

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses