The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveraging access to a SCSI initiator.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-06-23T10:00:00
Updated: 2024-08-06T11:04:27.539Z
Reserved: 2014-06-11T00:00:00
Link: CVE-2014-4027
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-06-23T11:21:18.700
Modified: 2023-11-07T02:20:22.100
Link: CVE-2014-4027
Redhat