sound/core/timer.c in the Linux kernel before 4.11.5 is vulnerable to a data race in the ALSA /dev/snd/timer driver resulting in local users being able to read information belonging to other users, i.e., uninitialized memory contents may be disclosed when a read and an ioctl happen at the same time.
References
Configurations
History
No history.
Information
Published : 2017-06-17 18:29
Updated : 2024-02-04 19:29
NVD link : CVE-2017-1000380
Mitre link : CVE-2017-1000380
CVE.ORG link : CVE-2017-1000380
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor