CVE-2012-6538 describes an information disclosure vulnerability in the Linux kernel's net/xfrm/xfrm_user.c, affecting versions before 3.6, as well as Red Hat Enterprise Linux. A flaw in the copy_to_user_auth function, specifically the use of an incorrect C library function for string copying, allows local users with CAP_NET_ADMIN privileges to extract sensitive data from kernel heap memory. The vulnerability has a low severity CVSS score of 1.9, indicating a local attack vector with medium complexity and a potential impact limited to partial confidentiality. There is no impact on integrity or availability. Currently, there is no evidence of active exploitation, nor are there publicly available exploits in Metasploit, Nuclei, or ExploitDB. The CVE has received minimal community attention, with no social media discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.5.7CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc1:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc2:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc3:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc4:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.