CVE-2014-4027
published 2014-06-23CVE-2014-4027: The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure…
PriorityP47low2.3CVSS 2.0
AVAACMAuSCPINAN
EPSS
0.65%
47.1th percentile
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveraging access to a SCSI initiator.
Affected
40 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | linux | < linux 3.14.2-1 (bookworm) | linux 3.14.2-1 (bookworm) |
| f5 | big-ip_access_policy_manager | — | — |
| f5 | big-ip_access_policy_manager | 11.1.0 – 11.6.0 | — |
| f5 | big-ip_advanced_firewall_manager | — | — |
| f5 | big-ip_advanced_firewall_manager | 11.3.0 – 11.6.0 | — |
| f5 | big-ip_analytics | — | — |
| f5 | big-ip_analytics | 11.1.0 – 11.6.0 | — |
| f5 | big-ip_application_acceleration_manager | — | — |
| f5 | big-ip_application_acceleration_manager | 11.4.0 – 11.6.0 | — |
| f5 | big-ip_application_security_manager | — | — |
| f5 | big-ip_application_security_manager | 11.1.0 – 11.6.0 | — |
| f5 | big-ip_domain_name_system | — | — |
| f5 | big-ip_edge_gateway | 11.1.0 – 11.3.0 | — |
| f5 | big-ip_global_traffic_manager | 11.1.0 – 11.6.0 | — |
| f5 | big-ip_link_controller | — | — |
| f5 | big-ip_link_controller | 11.1.0 – 11.6.0 | — |
| f5 | big-ip_local_traffic_manager | — | — |
| f5 | big-ip_local_traffic_manager | 11.1.0 – 11.6.0 | — |
| f5 | big-ip_policy_enforcement_manager | — | — |
| f5 | big-ip_policy_enforcement_manager | 11.3.0 – 11.6.0 | — |
| f5 | big-ip_protocol_security_module | 11.1.0 – 11.4.1 | — |
| f5 | big-ip_wan_optimization_manager | 11.1.0 – 11.3.0 | — |
| f5 | big-ip_webaccelerator | 11.1.0 – 11.3.0 | — |
| f5 | big-iq_application_delivery_controller | — | — |
CVSS provenance
nvdv2.02.3LOWAV:A/AC:M/Au:S/C:P/I:N/A:N
osv5.5MEDIUM
vendor_ubuntu5.5MEDIUM
vendor_debian2.3LOW
vendor_redhat2.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2014-09-02·CVSS 3.3
CVE-2014-3917 [LOW] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
An flaw was discovered in the Linux kernel's audit subsystem when auditing
certain syscalls. A local attacker could exploit this flaw to obtain
potentially sensitive single-bit values from kernel memory or cause a
denial of service (OOPS). (CVE-2014-3917)
An information leak was discovered in the rd_mcp backend of the iSCSI
target subsystem in the Linux kernel. A local user could exploit this flaw
to obtain sensitive information from ramdisk_mcp memory by leveraging
access to a SCSI initiator. (CVE-2014-4027)
Sasha Levin reported an issue with the Linux kernel's shared memory
subsystem when used with range notifications and hole punching. A local
user could exploit this flaw to cause
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2014-09-02·CVSS 3.3
CVE-2014-3917 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
An flaw was discovered in the Linux kernel's audit subsystem when auditing
certain syscalls. A local attacker could exploit this flaw to obtain
potentially sensitive single-bit values from kernel memory or cause a
denial of service (OOPS). (CVE-2014-3917)
An information leak was discovered in the rd_mcp backend of the iSCSI
target subsystem in the Linux kernel. A local user could exploit this flaw
to obtain sensitive information from ramdisk_mcp memory by leveraging
access to a SCSI initiator. (CVE-2014-4027)
Sasha Levin reported an issue with the Linux kernel's shared memory
subsystem when used with range notifications and hole punching. A local
user could exploit this flaw to cause a denial
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2014-09-02·CVSS 5.5
CVE-2014-0155 [MEDIUM] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel virtual machine's (kvm)
validation of interrupt requests (irq). A guest OS user could exploit this
flaw to cause a denial of service (host OS crash). (CVE-2014-0155)
Andy Lutomirski discovered a flaw in the authorization of netlink socket
operations when a socket is passed to a process of more privilege. A local
user could exploit this flaw to bypass access restrictions by having a
privileged executable do something it was not intended to do.
(CVE-2014-0181)
An information leak was discovered in the Linux kernels
aio_read_events_ring function. A local user could exploit this flaw to
obtain potentially sensitive information from kernel mem
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2014-09-02·CVSS 5.5
CVE-2014-0155 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel virtual machine's (kvm)
validation of interrupt requests (irq). A guest OS user could exploit this
flaw to cause a denial of service (host OS crash). (CVE-2014-0155)
Andy Lutomirski discovered a flaw in the authorization of netlink socket
operations when a socket is passed to a process of more privilege. A local
user could exploit this flaw to bypass access restrictions by having a
privileged executable do something it was not intended to do.
(CVE-2014-0181)
An information leak was discovered in the Linux kernels
aio_read_events_ring function. A local user could exploit this flaw to
obtain potentially sensitive information from kernel memory.
(CVE-201
Ubuntu
Linux kernel (Quantal HWE) vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.9
CVE-2014-0131 [LOW] Linux kernel (Quantal HWE) vulnerabilities
Title: Linux kernel (Quantal HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Michael S. Tsirkin discovered an information leak in the Linux kernel's
segmentation of skbs when using the zerocopy feature of vhost-net. A local
attacker could exploit this flaw to gain potentially sensitive information
from kernel memory. (CVE-2014-0131)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
An flaw
Red Hat
Kernel: target/rd: imformation leakage
vendor_redhat·2014-01-07·CVSS 2.3
CVE-2014-4027 [LOW] Kernel: target/rd: imformation leakage
Kernel: target/rd: imformation leakage
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveraging access to a SCSI initiator.
An information leak flaw was found in the RAM Disks Memory Copy (rd_mcp) backend driver of the iSCSI Target subsystem of the Linux kernel. A privileged user could use this flaw to leak the contents of kernel memory to an iSCSI initiator remote client.
Statement: This issue does not affect the version of the kernel package as shipped with Red Hat Enterprise Linux 5.
This issue affects the versions of Linux kernel package as shipped with Red Hat Enterprise Linux 6 and 7. Futu
Debian
CVE-2014-4027: linux - The rd_build_device_space function in drivers/target/target_core_rd.c in the Lin...
vendor_debian·2014·CVSS 2.3
CVE-2014-4027 [LOW] CVE-2014-4027: linux - The rd_build_device_space function in drivers/target/target_core_rd.c in the Lin...
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveraging access to a SCSI initiator.
Scope: local
bookworm: resolved (fixed in 3.14.2-1)
bullseye: resolved (fixed in 3.14.2-1)
forky: resolved (fixed in 3.14.2-1)
sid: resolved (fixed in 3.14.2-1)
trixie: resolved (fixed in 3.14.2-1)
GHSA
GHSA-j649-2854-8rqg: The rd_build_device_space function in drivers/target/target_core_rd
ghsa_unreviewed·2022-05-13
CVE-2014-4027 [LOW] CWE-200 GHSA-j649-2854-8rqg: The rd_build_device_space function in drivers/target/target_core_rd
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveraging access to a SCSI initiator.
OSV
linux vulnerabilities
osv·2014-09-02·CVSS 5.5
CVE-2014-0155 [MEDIUM] linux vulnerabilities
linux vulnerabilities
A flaw was discovered in the Linux kernel virtual machine's (kvm)
validation of interrupt requests (irq). A guest OS user could exploit this
flaw to cause a denial of service (host OS crash). (CVE-2014-0155)
Andy Lutomirski discovered a flaw in the authorization of netlink socket
operations when a socket is passed to a process of more privilege. A local
user could exploit this flaw to bypass access restrictions by having a
privileged executable do something it was not intended to do.
(CVE-2014-0181)
An information leak was discovered in the Linux kernels
aio_read_events_ring function. A local user could exploit this flaw to
obtain potentially sensitive information from kernel memory.
(CVE-2014-0206)
A flaw was discovered in the Linux kernel's implementation of use
OSV
CVE-2014-4027: The rd_build_device_space function in drivers/target/target_core_rd
osv·2014-06-23·CVSS 2.3
CVE-2014-4027 [LOW] CVE-2014-4027: The rd_build_device_space function in drivers/target/target_core_rd
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveraging access to a SCSI initiator.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=4442dc8a92b8f9ad8ee9e7f8438f4c04c03a22dchttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.htmlhttp://permalink.gmane.org/gmane.linux.scsi.target.devel/6618http://secunia.com/advisories/59134http://secunia.com/advisories/59777http://secunia.com/advisories/60564http://secunia.com/advisories/61310http://www.openwall.com/lists/oss-security/2014/06/11/1http://www.ubuntu.com/usn/USN-2334-1http://www.ubuntu.com/usn/USN-2335-1https://bugzilla.redhat.com/show_bug.cgi?id=1108744https://github.com/torvalds/linux/commit/4442dc8a92b8f9ad8ee9e7f8438f4c04c03a22dchttps://support.f5.com/kb/en-us/solutions/public/15000/600/sol15685.htmlhttp://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=4442dc8a92b8f9ad8ee9e7f8438f4c04c03a22dchttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.htmlhttp://permalink.gmane.org/gmane.linux.scsi.target.devel/6618http://secunia.com/advisories/59134http://secunia.com/advisories/59777http://secunia.com/advisories/60564http://secunia.com/advisories/61310http://www.openwall.com/lists/oss-security/2014/06/11/1http://www.ubuntu.com/usn/USN-2334-1http://www.ubuntu.com/usn/USN-2335-1https://bugzilla.redhat.com/show_bug.cgi?id=1108744https://github.com/torvalds/linux/commit/4442dc8a92b8f9ad8ee9e7f8438f4c04c03a22dchttps://support.f5.com/kb/en-us/solutions/public/15000/600/sol15685.html
2014-06-23
Published