CVE-2013-3076: Infoleak
Published Apr 22, 2013
·Updated
Last updated 24 July 2024
Other sources
The crypto API in the Linux kernel through 3.9-rc8 does not initialize ...
— Debian
Affected Software
8 affected componentsFixes available
Linux Linux kernel<=3.9
Linux Linux kernel=3.9-rc1
Linux Linux kernel=3.9-rc2
Linux Linux kernel=3.9-rc3
Linux Linux kernel=3.9-rc4
Linux Linux kernel=3.9-rc5
Linux Linux kernel=3.9-rc6
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-1
Remediation
Event History
Apr 22, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:02 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·12:57 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-3076?
CVE-2013-3076 has a moderate severity rating due to potential local information disclosure.
2
How do I fix CVE-2013-3076?
To fix CVE-2013-3076, upgrade to a Linux kernel version that is not affected, such as 5.10.223-1 or higher.
3
Who is affected by CVE-2013-3076?
Local users on Linux kernel versions up to 3.9-rc8 are at risk of CVE-2013-3076.
4
What type of vulnerability is CVE-2013-3076?
CVE-2013-3076 is an information disclosure vulnerability in the Linux kernel's crypto API.
5
What can attackers do with CVE-2013-3076?
Attackers exploiting CVE-2013-3076 can potentially access sensitive information from the kernel stack memory.