| Name | CVE-2005-3276 |
| Description | The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information. |
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
| References | DSA-922-1 |
The information below is based on the following data on fixed versions.
| Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
|---|---|---|---|---|---|---|
| kernel-image-2.6.8-alpha | source | sarge | 2.6.8-16sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-amd64 | source | sarge | 2.6.8-16sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-hppa | source | sarge | 2.6.8-6sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-i386 | source | sarge | 2.6.8-16sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-ia64 | source | sarge | 2.6.8-14sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-m68k | source | sarge | 2.6.8-4sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-s390 | source | sarge | 2.6.8-5sarge1 | DSA-922-1 | ||
| kernel-image-2.6.8-sparc | source | sarge | 2.6.8-15sarge1 | DSA-922-1 | ||
| kernel-patch-powerpc-2.6.8 | source | sarge | 2.6.8-12sarge1 | DSA-922-1 | ||
| kernel-source-2.4.27 | source | (unstable) | (not affected) | |||
| kernel-source-2.6.8 | source | sarge | 2.6.8-16sarge1 | DSA-922-1 | ||
| linux-2.6 | source | (unstable) | 2.6.12-2 |