CVE-2009-2847

CVE-2009-2847

CVE-2009-2847 · MEDIUM Severity

AV:L/AC:L/AU:N/C:C/I:N/A:N

The do_sigaltstack function in kernel/signal.c in Linux kernel 2.4 through 2.4.37 and 2.6 before 2.6.31-rc5, when running on 64-bit systems, does not clear certain padding bytes from a structure, which allows local users to obtain sensitive information from the kernel stack via the sigaltstack function.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.