In the Linux kernel before 5.2.14, rds6_inc_info_copy in net/rds/recv.c allows attackers to obtain sensitive information from kernel stack memory because tos and flags fields are not initialized.
References
Configurations
Information
Published : 2019-09-23 12:15
Updated : 2021-07-21 11:39
NVD link : CVE-2019-16714
Mitre link : CVE-2019-16714
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
