CVE-2013-3237
published 2013-04-22CVE-2013-3237: The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows…
PriorityP415medium4.9CVSS 2.0
AVLACLAuNCCINAN
EPSS
0.39%
31.1th percentile
The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < open-vm-tools 2:9.2.2-893683-8 (bookworm) | open-vm-tools 2:9.2.2-893683-8 (bookworm) |
| debian | open-vm-tools | < open-vm-tools 2:9.2.2-893683-8 (bookworm) | open-vm-tools 2:9.2.2-893683-8 (bookworm) |
| linux | linux_kernel | <= 3.9 | — |
| linux | linux_kernel | — | — |
| vmware | open-vm-tools | >= 0 < 2:9.2.2-893683-8 | 2:9.2.2-893683-8 |
| vmware | open-vm-tools | >= 0 < 2:9.2.2-893683-8 | 2:9.2.2-893683-8 |
| vmware | open-vm-tools | >= 0 < 2:9.2.2-893683-8 | 2:9.2.2-893683-8 |
| vmware | open-vm-tools | >= 0 < 2:9.2.2-893683-8 | 2:9.2.2-893683-8 |
CVSS provenance
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:C/I:N/A:N
osv4.9MEDIUM
vendor_debian4.9LOW
vendor_redhat4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-p58m-x6g6-54jx: The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock
ghsa_unreviewed·2022-05-17
CVE-2013-3237 [MEDIUM] CWE-200 GHSA-p58m-x6g6-54jx: The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock
The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
OSV
CVE-2013-3237: The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock
osv·2013-04-22·CVSS 4.9
CVE-2013-3237 [MEDIUM] CVE-2013-3237: The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock
The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Red Hat
kernel: VSOCK: Fix missing msg_namelen update in vsock_stream_recvmsg
vendor_redhat·2013-04-07·CVSS 4.9
CVE-2013-3237 [MEDIUM] kernel: VSOCK: Fix missing msg_namelen update in vsock_stream_recvmsg
kernel: VSOCK: Fix missing msg_namelen update in vsock_stream_recvmsg
The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Statement: This issue does not affect the versions of the kernel package as shipped with
Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) - Not affected
Debian
CVE-2013-3237: linux - The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kerne...
vendor_debian·2013·CVSS 4.9
CVE-2013-3237 [MEDIUM] CVE-2013-3237: linux - The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kerne...
The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=d5e0d0f607a7a029c6563a0470d88255c89a8d11http://www.openwall.com/lists/oss-security/2013/04/14/3https://github.com/torvalds/linux/commit/d5e0d0f607a7a029c6563a0470d88255c89a8d11https://lkml.org/lkml/2013/4/14/107http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=d5e0d0f607a7a029c6563a0470d88255c89a8d11http://www.openwall.com/lists/oss-security/2013/04/14/3https://github.com/torvalds/linux/commit/d5e0d0f607a7a029c6563a0470d88255c89a8d11https://lkml.org/lkml/2013/4/14/107
2013-04-22
Published