{"api_version":"1","generated_at":"2026-07-23T12:24:58+00:00","cve":"CVE-2009-3228","urls":{"html":"https://cve.report/CVE-2009-3228","api":"https://cve.report/api/cve/CVE-2009-3228.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2009-3228","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2009-3228"},"summary":{"title":"CVE-2009-3228","description":"The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.","state":"PUBLISHED","assigner":"mitre","published_at":"2009-10-19 20:00:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-909","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"2.1","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.openwall.com/lists/oss-security/2009/09/07/2","name":"http://www.openwall.com/lists/oss-security/2009/09/07/2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE request: kernel: tc: uninitialised kernel memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2010:198","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2010:198","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Support / Security / Advisories /  / MDVSA-2010:198 | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/37084","name":"http://secunia.com/advisories/37084","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Red Hat update for kernel - Secunia Advisories - Vulnerability Information - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6757","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6757","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.6","name":"http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.6","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"404: File not found","mime":"text/plain","httpstatus":"404","archivestatus":"200"},{"url":"http://www.redhat.com/support/errata/RHSA-2009-1522.html","name":"http://www.redhat.com/support/errata/RHSA-2009-1522.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/38794","name":"http://secunia.com/advisories/38794","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"VMware vMA Update for Multiple Packages - Advisories - Community","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1023073","name":"http://www.securitytracker.com/id?1023073","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Linux Kernel tc_fill_tclass() Discloses Potentially Sensitive Kernel Memory to Local Users - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9409","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9409","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2009/09/17/9","name":"http://www.openwall.com/lists/oss-security/2009/09/17/9","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE request: kernel: tc: uninitialised kernel memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2010/0528","name":"http://www.vupen.com/english/advisories/2010/0528","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2009/09/05/2","name":"http://www.openwall.com/lists/oss-security/2009/09/05/2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE request: kernel: tc: uninitialised kernel memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b","name":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"kernel/git/torvalds/linux.git - Linux kernel source tree","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://patchwork.ozlabs.org/patch/32830/","name":"http://patchwork.ozlabs.org/patch/32830/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory"],"title":"tc: Fix unitialized kernel memory leak - Patchwork","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/usn-864-1","name":"http://www.ubuntu.com/usn/usn-864-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"USN-864-1: Linux kernel vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kernel.org/pub/linux/kernel/v2.6/testing/v2.6.31/ChangeLog-2.6.31-rc9","name":"http://www.kernel.org/pub/linux/kernel/v2.6/testing/v2.6.31/ChangeLog-2.6.31-rc9","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"404: File not found","mime":"text/plain","httpstatus":"404","archivestatus":"200"},{"url":"http://lists.vmware.com/pipermail/security-announce/2010/000082.html","name":"http://lists.vmware.com/pipermail/security-announce/2010/000082.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"[Security-announce] VMSA-2010-0004 ESX Service Console and vMA\tthird party updates","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://rhn.redhat.com/errata/RHSA-2009-1540.html","name":"https://rhn.redhat.com/errata/RHSA-2009-1540.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Red Hat Customer Portal","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://secunia.com/advisories/38834","name":"http://secunia.com/advisories/38834","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"VMware ESX Server 4 Multiple Vulnerabilities - Advisories - Community","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://rhn.redhat.com/errata/RHSA-2009-1548.html","name":"https://rhn.redhat.com/errata/RHSA-2009-1548.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"rhn.redhat.com | Red Hat Support","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2009/09/06/2","name":"http://www.openwall.com/lists/oss-security/2009/09/06/2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE request: kernel: tc: uninitialised kernel memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git%3Ba=commit%3Bh=096ed17f20affc2db0e307658c69b67433992a7a","name":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git%3Ba=commit%3Bh=096ed17f20affc2db0e307658c69b67433992a7a","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://www.openwall.com/lists/oss-security/2009/09/17/1","name":"http://www.openwall.com/lists/oss-security/2009/09/17/1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE request: kernel: tc: uninitialised kernel\n memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2009/09/03/1","name":"http://www.openwall.com/lists/oss-security/2009/09/03/1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - CVE request: kernel: tc: uninitialised kernel memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=520990","name":"https://bugzilla.redhat.com/show_bug.cgi?id=520990","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Patch","Third Party Advisory"],"title":"Bug 520990 – CVE-2009-3228 kernel: tc: uninitialised kernel memory leak","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git;a=commit;h=096ed17f20affc2db0e307658c69b67433992a7a","name":"CONFIRM:http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git;a=commit;h=096ed17f20affc2db0e307658c69b67433992a7a","refsource":"MITRE","tags":[],"title":"","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b","name":"CONFIRM:http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b","refsource":"MITRE","tags":[],"title":"kernel/git/torvalds/linux.git - Linux kernel source tree","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2009-3228","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2009-3228","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2009","cve_id":"3228","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[{"cvename":"CVE-2009-3228","organization":"Red Hat","lastmodified":"2009-11-04","contributor":"Tomas Hoger","statementText":"This issue was addressed in Red Hat Enterprise Linux 4, 5, and Red Hat Enterprise MRG via: https://rhn.redhat.com/errata/RHSA-2009-1522.html , https://rhn.redhat.com/errata/RHSA-2009-1548 and https://rhn.redhat.com/errata/RHSA-2009-1540 respectively. It has been rated as having moderate security impact and is not planned to be fixed in Red Hat Enterprise Linux 3, due to this product being in Production 3 of its maintenance life-cycle, where only qualified security errata of important or critical impact are addressed. For further information about Errata Support Policy, visit: http://www.redhat.com/security/updates/errata/","cve_year":"2009","cve_id":"3228","crc32":"401af889"}],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T06:22:23.283Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"[oss-security] 20090917 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2009/09/17/9"},{"name":"[oss-security] 20090916 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2009/09/17/1"},{"name":"RHSA-2009:1540","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"https://rhn.redhat.com/errata/RHSA-2009-1540.html"},{"name":"USN-864-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/usn-864-1"},{"name":"38794","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/38794"},{"name":"[security-announce] 20100303 VMSA-2010-0004 ESX Service Console and vMA third party updates","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lists.vmware.com/pipermail/security-announce/2010/000082.html"},{"name":"MDVSA-2010:198","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2010:198"},{"name":"[oss-security] 20090903 CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2009/09/03/1"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=520990"},{"name":"37084","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/37084"},{"name":"RHSA-2009:1522","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"http://www.redhat.com/support/errata/RHSA-2009-1522.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.6"},{"name":"oval:org.mitre.oval:def:9409","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9409"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git%3Ba=commit%3Bh=096ed17f20affc2db0e307658c69b67433992a7a"},{"name":"RHSA-2009:1548","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"https://rhn.redhat.com/errata/RHSA-2009-1548.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.kernel.org/pub/linux/kernel/v2.6/testing/v2.6.31/ChangeLog-2.6.31-rc9"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b"},{"name":"38834","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/38834"},{"name":"[oss-security] 20090906 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2009/09/06/2"},{"name":"[oss-security] 20090907 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2009/09/07/2"},{"name":"[oss-security] 20090905 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2009/09/05/2"},{"name":"1023073","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1023073"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://patchwork.ozlabs.org/patch/32830/"},{"name":"oval:org.mitre.oval:def:6757","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6757"},{"name":"ADV-2010-0528","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2010/0528"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2009-09-05T00:00:00.000Z","descriptions":[{"lang":"en","value":"The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-09-18T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"[oss-security] 20090917 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2009/09/17/9"},{"name":"[oss-security] 20090916 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2009/09/17/1"},{"name":"RHSA-2009:1540","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"https://rhn.redhat.com/errata/RHSA-2009-1540.html"},{"name":"USN-864-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/usn-864-1"},{"name":"38794","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/38794"},{"name":"[security-announce] 20100303 VMSA-2010-0004 ESX Service Console and vMA third party updates","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lists.vmware.com/pipermail/security-announce/2010/000082.html"},{"name":"MDVSA-2010:198","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2010:198"},{"name":"[oss-security] 20090903 CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2009/09/03/1"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=520990"},{"name":"37084","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/37084"},{"name":"RHSA-2009:1522","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"http://www.redhat.com/support/errata/RHSA-2009-1522.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.6"},{"name":"oval:org.mitre.oval:def:9409","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9409"},{"tags":["x_refsource_CONFIRM"],"url":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git%3Ba=commit%3Bh=096ed17f20affc2db0e307658c69b67433992a7a"},{"name":"RHSA-2009:1548","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"https://rhn.redhat.com/errata/RHSA-2009-1548.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.kernel.org/pub/linux/kernel/v2.6/testing/v2.6.31/ChangeLog-2.6.31-rc9"},{"tags":["x_refsource_CONFIRM"],"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b"},{"name":"38834","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/38834"},{"name":"[oss-security] 20090906 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2009/09/06/2"},{"name":"[oss-security] 20090907 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2009/09/07/2"},{"name":"[oss-security] 20090905 Re: CVE request: kernel: tc: uninitialised kernel memory leak","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2009/09/05/2"},{"name":"1023073","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1023073"},{"tags":["x_refsource_CONFIRM"],"url":"http://patchwork.ozlabs.org/patch/32830/"},{"name":"oval:org.mitre.oval:def:6757","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6757"},{"name":"ADV-2010-0528","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2010/0528"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2009-3228","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"[oss-security] 20090917 Re: CVE request: kernel: tc: uninitialised kernel memory leak","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2009/09/17/9"},{"name":"[oss-security] 20090916 Re: CVE request: kernel: tc: uninitialised kernel memory leak","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2009/09/17/1"},{"name":"RHSA-2009:1540","refsource":"REDHAT","url":"https://rhn.redhat.com/errata/RHSA-2009-1540.html"},{"name":"USN-864-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/usn-864-1"},{"name":"38794","refsource":"SECUNIA","url":"http://secunia.com/advisories/38794"},{"name":"[security-announce] 20100303 VMSA-2010-0004 ESX Service Console and vMA third party updates","refsource":"MLIST","url":"http://lists.vmware.com/pipermail/security-announce/2010/000082.html"},{"name":"MDVSA-2010:198","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2010:198"},{"name":"[oss-security] 20090903 CVE request: kernel: tc: uninitialised kernel memory leak","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2009/09/03/1"},{"name":"https://bugzilla.redhat.com/show_bug.cgi?id=520990","refsource":"CONFIRM","url":"https://bugzilla.redhat.com/show_bug.cgi?id=520990"},{"name":"37084","refsource":"SECUNIA","url":"http://secunia.com/advisories/37084"},{"name":"RHSA-2009:1522","refsource":"REDHAT","url":"http://www.redhat.com/support/errata/RHSA-2009-1522.html"},{"name":"http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.6","refsource":"CONFIRM","url":"http://www.kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.37.6"},{"name":"oval:org.mitre.oval:def:9409","refsource":"OVAL","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9409"},{"name":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git;a=commit;h=096ed17f20affc2db0e307658c69b67433992a7a","refsource":"CONFIRM","url":"http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git;a=commit;h=096ed17f20affc2db0e307658c69b67433992a7a"},{"name":"RHSA-2009:1548","refsource":"REDHAT","url":"https://rhn.redhat.com/errata/RHSA-2009-1548.html"},{"name":"http://www.kernel.org/pub/linux/kernel/v2.6/testing/v2.6.31/ChangeLog-2.6.31-rc9","refsource":"CONFIRM","url":"http://www.kernel.org/pub/linux/kernel/v2.6/testing/v2.6.31/ChangeLog-2.6.31-rc9"},{"name":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b","refsource":"CONFIRM","url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=16ebb5e0b36ceadc8186f71d68b0c4fa4b6e781b"},{"name":"38834","refsource":"SECUNIA","url":"http://secunia.com/advisories/38834"},{"name":"[oss-security] 20090906 Re: CVE request: kernel: tc: uninitialised kernel memory leak","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2009/09/06/2"},{"name":"[oss-security] 20090907 Re: CVE request: kernel: tc: uninitialised kernel memory leak","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2009/09/07/2"},{"name":"[oss-security] 20090905 Re: CVE request: kernel: tc: uninitialised kernel memory leak","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2009/09/05/2"},{"name":"1023073","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1023073"},{"name":"http://patchwork.ozlabs.org/patch/32830/","refsource":"CONFIRM","url":"http://patchwork.ozlabs.org/patch/32830/"},{"name":"oval:org.mitre.oval:def:6757","refsource":"OVAL","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6757"},{"name":"ADV-2010-0528","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2010/0528"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2009-3228","datePublished":"2009-10-19T19:27:00.000Z","dateReserved":"2009-09-16T00:00:00.000Z","dateUpdated":"2024-08-07T06:22:23.283Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2009-10-19 20:00:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-909","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"2.4.0","versionEndExcluding":"2.4.37.6","matchCriteriaId":"9E1FDE50-BE6F-44A9-9A66-C8B0EDB10923"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"2.6.0","versionEndExcluding":"2.6.31","matchCriteriaId":"EDDD2288-DF54-44E9-A60B-A7FFDCCC694F"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:-:*:*:*:*:*:*","matchCriteriaId":"2887290A-1B43-4DB9-A9D0-B0B56CD78E48"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc1:*:*:*:*:*:*","matchCriteriaId":"29C4A364-ED36-4AC8-AD1E-8BD18DD9324D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc2:*:*:*:*:*:*","matchCriteriaId":"4049867A-E3B2-4DC1-8966-0477E6A5D582"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc3:*:*:*:*:*:*","matchCriteriaId":"A2507858-675B-4DA2-A49E-00DB54700CF3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc4:*:*:*:*:*:*","matchCriteriaId":"0A25EA55-3F1C-440C-A383-0BB9556C9508"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc5:*:*:*:*:*:*","matchCriteriaId":"B2665356-4EF5-4543-AD15-67FDB851DCCD"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc6:*:*:*:*:*:*","matchCriteriaId":"26E7609B-B058-496D-ACDD-7F69FBDE89E5"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc7:*:*:*:*:*:*","matchCriteriaId":"210BF049-8B3C-4ACC-BF8E-2C3551477602"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.31:rc8:*:*:*:*:*:*","matchCriteriaId":"1837F32C-80D3-4E10-AE5D-E9F5A11A434E"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*","matchCriteriaId":"454A5D17-B171-4F1F-9E0B-F18D1E5CA9FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*","matchCriteriaId":"7EBFE35C-E243-43D1-883D-4398D71763CC"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:8.10:*:*:*:*:*:*:*","matchCriteriaId":"4747CC68-FAF4-482F-929A-9DA6C24CB663"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:9.04:*:*:*:*:*:*:*","matchCriteriaId":"A5D026D0-EF78-438D-BEDD-FC8571F3ACEB"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:9.10:*:*:*:*:*:*:*","matchCriteriaId":"A2BCB73E-27BB-4878-AD9C-90C4F20C25A0"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*","matchCriteriaId":"133AAFA7-AF42-4D7B-8822-AA2E85611BF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_eus:5.4:*:*:*:*:*:*:*","matchCriteriaId":"4DD6917D-FE03-487F-9F2C-A79B5FCFBC5A"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*","matchCriteriaId":"54D669D4-6D7E-449D-80C1-28FA44F06FFE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*","matchCriteriaId":"D0AC5CD5-6E58-433C-9EB3-6DFE5656463E"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2009","CveId":"3228","Ordinal":"1","Title":"CVE-2009-3228","CVE":"CVE-2009-3228","Year":"2009"},"notes":[{"CveYear":"2009","CveId":"3228","Ordinal":"1","NoteData":"The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.","Type":"Description","Title":"CVE-2009-3228"},{"CveYear":"2009","CveId":"3228","Ordinal":"2","NoteData":"2009-10-19","Type":"Other","Title":"Published"},{"CveYear":"2009","CveId":"3228","Ordinal":"3","NoteData":"2017-09-18","Type":"Other","Title":"Modified"}]}}}