> [Suggested description]
> The print_binder_ref_olocked function in drivers/android/binder.c in
> the Linux kernel 4.14.90 allows local users to obtain sensitive address
> information by reading " ref *desc *node" lines in a debugfs file.
>
> ------------------------------------------
>
> [VulnerabilityType Other]
> CWE-200
>
> ------------------------------------------
>
> [Vendor of Product]
> Debian GNU/Linux
>
> ------------------------------------------
>
> [Affected Product Code Base]
> Linux - 4.14.90
>
> ------------------------------------------
>
> [Attack Type]
> Local
>
> ------------------------------------------
>
> [Impact Information Disclosure]
> true
>
> ------------------------------------------
>
> [Discoverer]
> Fuqian Huang
>
> ------------------------------------------
>
> [Reference]
> https://elixir.bootlin.com/linux/v4.14.90/source/drivers/android/binder.c

Reply via email to