漏洞信息详情
Linux kernel 信息泄露漏洞
漏洞简介
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。
Linux kernel 5.2.14之前版本中的net/rds/recv.c文件的rds6_inc_info_copy存在信息泄露漏洞。该漏洞源于网络系统或产品在运行过程中存在配置等错误。未授权的攻击者可利用漏洞获取受影响组件敏感信息。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.14
参考网址
来源:CONFIRM
链接:https://support.f5.com/csp/article/K48351130?utm_source=f5support&utm_medium=RSS
来源:github.com
链接:https://github.com/torvalds/linux/commit/7d0a06586b2686ba80c4a2da5f91cb10ffbea736
来源:cdn.kernel.org
链接:https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.14
来源:MLIST
链接:http://www.openwall.com/lists/oss-security/2019/09/24/2
来源:MLIST
链接:http://www.openwall.com/lists/oss-security/2019/09/25/1
来源:UBUNTU
链接:https://usn.ubuntu.com/4157-1/
来源:CONFIRM
链接:https://security.netapp.com/advisory/ntap-20191031-0005/
来源:UBUNTU
链接:https://usn.ubuntu.com/4157-2/
来源:usn.ubuntu.com
链接:https://usn.ubuntu.com/4157-1/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/154933/Ubuntu-Security-Notice-USN-4157-2.html
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-ibm-security-guardium-is-affected-by-kernel-vulnerabilities-3/
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2019-16714
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/154897/Ubuntu-Security-Notice-USN-4157-1.html
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-multiple-vulnerabilities-in-linux-kernel-affect-ibm-spectrum-protect-plus/
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Linux-kernel-information-disclosure-via-rds6-inc-info-copy-30388
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-ibm-security-guardium-is-affected-by-kernel-vulnerabilities-2/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.3897/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0644/
受影响实体
暂无
补丁
暂无
还没有评论,来说两句吧...