CVE-2017-14991 (NVD)

2017-10-03

The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel before 4.13.4 allows local users to obtain sensitive information from uninitialized kernel heap-memory locations via an SG_GET_REQUEST_TABLE ioctl call for /dev/sg0.

linux - Tree: 3e00974998

(? files)

Filter Settings
Files
Navigation
Patch data:

(on by default)


Patched area: