First published: Mon Apr 22 2013(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <=3.9 | |
Linux Kernel | =3.9-rc1 | |
Linux Kernel | =3.9-rc2 | |
Linux Kernel | =3.9-rc3 | |
Linux Kernel | =3.9-rc4 | |
Linux Kernel | =3.9-rc5 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.123-1 6.1.128-1 6.12.12-1 6.12.17-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3235 is considered a medium severity vulnerability as it allows local users to access sensitive information from kernel stack memory.
To fix CVE-2013-3235, upgrade to the Linux kernel version 3.9 or later.
CVE-2013-3235 affects Linux kernel versions prior to 3.9-rc7, including all 'rc' versions from 3.9-rc1 to 3.9-rc6.
CVE-2013-3235 can be exploited by local users with the ability to execute crafted recvmsg or recvfrom system calls.
CVE-2013-3235 can potentially disclose sensitive information stored in kernel stack memory.