CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 2.1. It affects Linux.
CVE
CVE-2008-0009
Severity
LOW
CVSS
2.1
EPSS
0.96%
Linux
Original NVD Description
The vmsplice_to_user function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which might allow local users to access arbitrary kernel memory locations.