An issue was discovered in the proc_pid_stack function in fs/proc/base.c in the Linux kernel through 4.18.11. It does not ensure that only root may inspect the kernel stack of an arbitrary task, allowing a local attacker to exploit racy stack unwinding and leak kernel task stack contents.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2018-10-03T22:00:00
Updated: 2019-11-27T11:06:03
Reserved: 2018-10-03T00:00:00
Link: CVE-2018-17972
JSON object: View
NVD Information
Status : Modified
Published: 2018-10-03T22:29:00.800
Modified: 2023-11-07T02:54:37.033
Link: CVE-2018-17972
JSON object: View
Redhat Information
No data.
CWE