In getsignalpage of signal.c, there is a possible leak of kernel data due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
{
"fixes": [
"https://android.googlesource.com/kernel/common/+/9c698bff66ab4914bb3d71da7dc6112519bde23e"
],
"severity": "Moderate",
"spl": "2022-03-05",
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_version": "v1",
"digest": {
"function_hash": "339938110582185630156828205763765012574",
"length": 434.0
},
"deprecated": false,
"signature_type": "Function",
"target": {
"function": "get_signal_page",
"file": "arch/arm/kernel/signal.c"
},
"source": "https://android.googlesource.com/kernel/common/+/9c698bff66ab4914bb3d71da7dc6112519bde23e",
"id": "PUB-A-197850306-924ef2dd"
},
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"172204053961297124746774733749632148791",
"58795547544708646071616854173628155454",
"78885293706127269740668196881614618451",
"282123551804674408836246440921981886827",
"50806308092549919788233337242074328280",
"89133989655327505921688482792177943628",
"296969725280413361612768861898306249329",
"36271020927615339050770287798758887251"
]
},
"deprecated": false,
"signature_type": "Line",
"target": {
"file": "arch/arm/kernel/signal.c"
},
"source": "https://android.googlesource.com/kernel/common/+/9c698bff66ab4914bb3d71da7dc6112519bde23e",
"id": "PUB-A-197850306-bf7555fa"
}
]
}