Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-8569

The (1) pptp_bind and (2) pptp_connect functions in drivers/net/ppp/pptp.c in the Linux kernel through 4.3.3 do not verify an address length, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism via a crafted application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 2.9%
CVSS Severity
CVSS v3 Score 2.3
CVSS v2 Score 1.9
References
Products affected by CVE-2015-8569


Contact Us

Shodan ® - All rights reserved