CVE-2009-0787

Linux kernel <2.6.28.9 - Info Disclosure

Title source: llm

Description

The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows local users to obtain portions of kernel memory.

Scores

EPSS 0.0006
EPSS Percentile 18.8%

Classification

CWE
CWE-189
Status draft

Affected Products (9)

linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel

Timeline

Published Mar 25, 2009
Tracked Since Feb 18, 2026