Medium severity5.5NVD Advisory· Published Sep 5, 2017· Updated May 13, 2026
CVE-2017-14156
CVE-2017-14156
Description
The atyfb_ioctl function in drivers/video/fbdev/aty/atyfb_base.c in the Linux kernel through 4.12.10 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading locations associated with padding bytes.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- github.com/torvalds/linux/pull/441nvdIssue TrackingPatchThird Party Advisory
- marc.infonvdMailing ListPatchThird Party Advisory
- marc.infonvdMailing ListPatchThird Party Advisory
- www.debian.org/security/2017/dsa-3981nvd
- www.securityfocus.com/bid/100634nvd
- usn.ubuntu.com/3583-1/nvd
- usn.ubuntu.com/3583-2/nvd
News mentions
0No linked articles in our index yet.