#VU15291 Input validation error in Linux kernel - CVE-2018-14656
Published: October 10, 2018
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to improper input validation when a missing address check occurs in the callers of the show_opcodes() function. A local user can use a specially crafted application to trigger kernel memory to be dumped into the dmesg log.