Kernel Memory Disclosure and Denial of Service Vulnerability

Kernel Memory Disclosure and Denial of Service Vulnerability

CVE-2014-3917 · LOW Severity

AV:L/AC:M/AU:N/C:P/I:N/A:P

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of service (OOPS) via a large value of a syscall number.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.