Name | CVE-2013-6834 |
Description | The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
Debian Bugs | 730519 |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
kfreebsd-10 | source | (unstable) | 10.0~svn258623-1 | 730519 | ||
kfreebsd-8 | source | (unstable) | (not affected) | |||
kfreebsd-9 | source | (unstable) | (not affected) |
- kfreebsd-9 <not-affected> (Only affects 10.x)
- kfreebsd-8 <not-affected> (Only affects 10.x)