A kernel information leak flaw was identified in the scsi_ioctl function in drivers/scsi/scsi_ioctl.c in the Linux kernel. This flaw allows a local attacker with a special user privilege (CAP_SYS_ADMIN or CAP_SYS_RAWIO) to create issues with confidentiality.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/sam8k/Dynamic-and-Static-Analysis-of-SOUPs