The copy_from_user_mmap_sem function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which allow local users to read from arbitrary kernel memory locations.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation26 reference(s) from NVD