VYPR
Medium severity5.5NVD Advisory· Published Jun 27, 2016· Updated May 6, 2026

CVE-2014-9903

CVE-2014-9903

Description

The sched_read_attr function in kernel/sched/core.c in the Linux kernel 3.14-rc before 3.14-rc4 uses an incorrect size, which allows local users to obtain sensitive information from kernel stack memory via a crafted sched_getattr system call.

Affected products

3
  • Linux/Kernel3 versions
    cpe:2.3:o:linux:linux_kernel:3.14:rc1:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:linux:linux_kernel:3.14:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:3.14:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:3.14:rc3:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.