The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-02-28T02:00:00

Updated: 2024-08-06T09:05:38.815Z

Reserved: 2013-12-03T00:00:00

Link: CVE-2014-0069

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-02-28T06:18:54.010

Modified: 2024-07-10T15:28:49.450

Link: CVE-2014-0069

cve-icon Redhat

Severity : Moderate

Publid Date: 2014-02-14T00:00:00Z

Links: CVE-2014-0069 - Bugzilla