CVE-2013-3223: Infoleak
Published Apr 22, 2013
·Updated
Last updated 24 July 2024
Other sources
The ax25recvmsg function in net/ax25/afax25.c in the Linux kernel be ...
— Debian
Affected Software
7 affected componentsFixes available
Linux Linux kernel<=3.9
Linux Linux kernel=3.9-rc1
Linux Linux kernel=3.9-rc2
Linux Linux kernel=3.9-rc3
Linux Linux kernel=3.9-rc4
Linux Linux kernel=3.9-rc5
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
Remediation
Event History
Apr 22, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:02 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·12:57 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-3223?
CVE-2013-3223 has a medium severity rating as it allows local users to access sensitive information from kernel memory.
2
How do I fix CVE-2013-3223?
To fix CVE-2013-3223, update your Linux kernel to a version later than 3.9-rc7, such as 5.10.223-1 or higher.
3
Who is affected by CVE-2013-3223?
Local users on systems running affected versions of the Linux kernel prior to 3.9-rc7 are at risk from CVE-2013-3223.
4
What systems are vulnerable to CVE-2013-3223?
CVE-2013-3223 affects the Linux kernel versions up to and including 3.9-rc6.
5
What kind of vulnerability is CVE-2013-3223?
CVE-2013-3223 is a local information disclosure vulnerability allowing unauthorized access to kernel stack memory.