CVE-2012-6546: Linux Kernel
Low severity, CVSS 1.9. EPSS: 0.4% chance of exploitation in the next 30 days.
The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
Affected products
- Linux Linux Kernel: up to and including 3.5.7; version 3.0 only; version 3.0.1 only; version 3.0.2 only; version 3.0.3 only; version 3.0.4 only; …
- Red Hat Enterprise Linux: version 5 only; version 6.0 only
Published 2013-03-15. Last modified 2026-06-16.