CVE-2012-3430: Linux Kernel

Low severity, CVSS 2.1. EPSS: 1% chance of exploitation in the next 30 days.

The rds_recvmsg function in net/rds/recv.c in the Linux kernel before 3.0.44 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) recvfrom or (2) recvmsg system call on an RDS socket.

Affected products

  • Linux Linux Kernel: up to and including 3.0.43; version 3.0.1 only; version 3.0.2 only; version 3.0.3 only; version 3.0.4 only; version 3.0.5 only; …

Published 2012-10-03. Last modified 2026-06-16.