CVE-2013-3225: Infoleak
Published Apr 22, 2013
·Updated
Last updated 24 July 2024
Other sources
The rfcommsockrecvmsg function in net/bluetooth/rfcomm/sock.c in the ...
— Debian
Affected Software
7 affected componentsFixes available
Linux Linux kernel<=3.9
Linux Linux kernel=3.9-rc1
Linux Linux kernel=3.9-rc2
Linux Linux kernel=3.9-rc3
Linux Linux kernel=3.9-rc4
Linux Linux kernel=3.9-rc5
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-1
Remediation
Event History
Apr 22, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:02 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·12:57 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-3225?
CVE-2013-3225 has a medium severity rating, as it allows local users to access sensitive information from the kernel stack.
2
How do I fix CVE-2013-3225?
To fix CVE-2013-3225, upgrade to a version of the Linux kernel that is above 3.9-rc7.
3
What versions of the Linux kernel are affected by CVE-2013-3225?
CVE-2013-3225 affects Linux kernel versions 3.9 and earlier, including 3.9-rc1 through 3.9-rc6.
4
Can CVE-2013-3225 be exploited remotely?
CVE-2013-3225 cannot be exploited remotely, as it requires local user access to the system.
5
What kind of information can be obtained through CVE-2013-3225?
CVE-2013-3225 allows local users to obtain sensitive information from kernel stack memory.