First published: Tue Sep 05 2017(Updated: )
Last updated 29 November 2024
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <=4.12.10 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.123-1 6.1.128-1 6.12.12-1 6.12.17-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2017-14156.
The atyfb_ioctl function in the Linux kernel through 4.12.10 does not initialize a certain data structure, allowing local users to obtain sensitive information from kernel stack memory.
The vulnerability affects the Linux kernel versions up to 4.12.10.
To fix the vulnerability, update your Linux kernel to version 4.13.0-17.20 or later.
You can find more information about the vulnerability at the following references: [link1], [link2], [link3].