PUB-A-120612905
Dashboard / Vulnerabilities / PUB-A-120612905
Summary:
Details: In do_ipt_get_ctl and do_ipt_set_ctl of ip_tables.c, there is a possible way to leak kernel information due to uninitialized data. This could lead to local information disclosure with system execution privileges needed. User interaction is not needed for exploitation.
References: https://source.android.com/security/bulletin/2021-12-01, https://android.googlesource.com/kernel/common/+/8a1b3c7bd71ef1e7a4537216858dbe7d13eec6ed, https://android.googlesource.com/kernel/common/+/d104670ce30b9f910f39fbaad3ec59f87fa43468, https://android.googlesource.com/kernel/common/+/bb5bc03a5056b4b22f00b7333c42c861b83ef19f, https://android.googlesource.com/kernel/common/+/dcd0c8c3e87cf08344e169fdb94eb7ec96c3c32a, https://android.googlesource.com/kernel/common/+/823f05d71506017aa4d47ae8b9546081686098fe
Affected packages
Package
Name: :linux_kernel:
Purl:
Affected ranges
Type: ECOSYSTEM
Events:
