** Description changed: - [information leak vulnerability in rtnetlink] + The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux + kernel before 4.5.5 does not initialize a certain data structure, which + allows local users to obtain sensitive information from kernel stack + memory by reading a Netlink message. Break-Fix: - 5f8e44741f9f216e33736ea4ec65ca9ac03036e6
-- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1578497 Title: CVE-2016-4486 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1578497/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
