CVE-2014-3952
FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer between the header and data of a control message, which allows local users to obtain sensitive information from kernel memory via unspecified vectors.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0007 (0.1%)
Percentile: 21.1%
EPSS: 2026-05-06
Affects
freebsd:freebsdTechnical description
FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer between the header and data of a control message, which allows local users to obtain sensitive information from kernel memory via unspecified vectors.
Published: 7/15/2014, 2:55:09 PM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://secunia.com/advisories/62218
- http://www.debian.org/security/2014/dsa-3070
- http://www.freebsd.org/security/advisories/FreeBSD-SA-14:17.kmem.asc
- http://www.securityfocus.com/bid/68466
- http://www.securitytracker.com/id/1030539
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94448
- http://secunia.com/advisories/62218
- http://www.debian.org/security/2014/dsa-3070