CVE-2006-0095 Information
Description
dm-crypt in Linux kernel 2.6.15 and earlier does not clear a structure before it is freed which leads to a memory disclosure that could allow local users to obtain sensitive information about a cryptographic key.
Reference
http://marc.info/?l=linux-kernel&m=113640535312572&w=2 http://marc.info/?l=linux-kernel&m=113641114812886&w=2 http://secunia.com/advisories/18487 http://secunia.com/advisories/18527 http://secunia.com/advisories/18774 http://secunia.com/advisories/19160 http://secunia.com/advisories/19374 http://secunia.com/advisories/20398 http://securityreason.com/securityalert/388 http://securitytracker.com/id?1015740 http://www.debian.org/security/2006/dsa-1017 http://www.mandriva.com/security/advisories?name=MDKSA-2006:040 http://www.novell.com/linux/security/advisories/2006-05-31.html http://www.osvdb.org/22418 http://www.redhat.com/archives/fedora-announce-list/2006-February/msg00037.html http://www.redhat.com/support/errata/RHSA-2006-0132.html http://www.securityfocus.com/archive/1/427981/100/0/threaded http://www.securityfocus.com/bid/16301 http://www.trustix.org/errata/2006/0004 http://www.vupen.com/english/advisories/2006/0235 https://exchange.xforce.ibmcloud.com/vulnerabilities/24189 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A11192 https://usn.ubuntu.com/244-1/
Share on: