Red Hat Bugzilla – Bug 956048
CVE-2013-3226 Kernel: Bluetooth: SCO - missing msg_namelen update in sco_sock_recvmsg
Last modified: 2015-07-31 03:04:32 EDT
Linux kernel built with the Bluetooth networking SCO socket support is vulnerable to an information leakage flaw. It occurs while receiving messages via recvmsg(2) call. A user/program could use this flaw to leak kernel memory bytes. Upstream fix: ------------- -> http://git.kernel.org/linus/c8c499175f7d295ef867335bceb9a76a2c3cdc38 Reference: ---------- -> http://www.openwall.com/lists/oss-security/2013/04/14/3
Statement: This issue does not affect the versions of the kernel package as shipped with Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.