CVE-2009-1192

Linux kernel <2.6.30-rc3 - Info Disclosure

Title source: llm

Description

The (1) agp_generic_alloc_page and (2) agp_generic_alloc_pages functions in drivers/char/agp/generic.c in the agp subsystem in the Linux kernel before 2.6.30-rc3 do not zero out pages that may later be available to a user-space process, which allows local users to obtain sensitive information by reading these pages.

References (31)

... and 11 more

Scores

EPSS 0.0009
EPSS Percentile 25.4%

Classification

Status draft

Affected Products (50)

linux/linux_kernel < 2.6.30
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
... and 35 more

Timeline

Published Apr 24, 2009
Tracked Since Feb 18, 2026