CVE-2013-7263

Source
https://nvd.nist.gov/vuln/detail/CVE-2013-7263
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-7263.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-7263
Downstream
Related
Published
2014-01-06T16:55:09Z
Modified
2025-08-09T20:01:25Z
Summary
[none]
Details

The Linux kernel before 3.12.4 updates certain length values before ensuring that associated data structures have been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call, related to net/ipv4/ping.c, net/ipv4/raw.c, net/ipv4/udp.c, net/ipv6/raw.c, and net/ipv6/udp.c.

References

Affected packages