CVE
- Id
- 75777
- CVE No.
- CVE-2014-8476
- Status
- Candidate
- Description
- The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a call to getlogin, which returns the entire buffer.
- Phase
- Assigned (20141024)
- Votes
- None (candidate not yet proposed)
- Comments