The raw_cmd_copyout function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly restrict access to certain pointers during processing of an FDRAWCMD ioctl call, which allows local users to obtain sensitive information from kernel heap memory by leveraging write access to a /dev/fd device.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Chrome
Published: 2014-05-11T21:00:00
Updated: 2024-08-06T09:50:11.164Z
Reserved: 2014-01-29T00:00:00
Link: CVE-2014-1738
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-05-11T21:55:05.873
Modified: 2024-11-21T02:04:56.130
Link: CVE-2014-1738
Redhat