CVE-2015-8374
MEDIUMLinux kernel <4.3.3 - Info Disclosure
Title source: llmDescription
fs/btrfs/inode.c in the Linux kernel before 4.3.3 mishandles compressed inline extents, which allows local users to obtain sensitive pre-truncation information from a file via a clone action.
References (21)
... and 1 more
Scores
CVSS v3
4.0
EPSS
0.0004
EPSS Percentile
12.7%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Classification
CWE
CWE-200
Status
draft
Affected Products (1)
linux/linux_kernel
< 4.3.2
Timeline
Published
Dec 28, 2015
Tracked Since
Feb 18, 2026