The copy_from_user_mmap_sem function in fs/splice.c in...
Low severity
Unreviewed
Published
May 1, 2022
to the GitHub Advisory Database
•
Updated Jan 31, 2023
Description
Published by the National Vulnerability Database
Feb 12, 2008
Published to the GitHub Advisory Database
May 1, 2022
Last updated
Jan 31, 2023
The copy_from_user_mmap_sem function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which allow local users to read from arbitrary kernel memory locations.
References