Red Hat Bugzilla – Bug 956135
CVE-2013-3234 Kernel: rose: info leak via msg_name in rose_recvmsg
Last modified: 2015-07-31 03:04:48 EDT
Linux kernel built with the ROSE virtual network devices (CONFIG_ROSE)
support is vulnerable to an information leakage flaw. It occurs while
receiving messages via recvmsg(2) call.
A user/program could use this flaw to leak kernel memory bytes.
This issue does not affect the versions of the kernel package as shipped with
Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.
Created kernel tracking bugs for this issue
Affects: fedora-all [bug 956139]
kernel-3.8.8-203.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report.
kernel-3.8.11-100.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report.