First published: Fri Jun 03 2005(Updated: )
FUSE 2.x before 2.3.0 does not properly clear previously used memory from unfilled pages when the filesystem returns a short byte count to a read request, which may allow local users to obtain sensitive information.
Credit: security@debian.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fuse Fuse | =2.2 | |
Fuse Fuse | =2.3_rc1 | |
Fuse Fuse | =2.2.1 | |
Fuse Fuse | =2.3_pre |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.