CVE-2015-5697: Linux Kernel

Low severity, CVSS 2.1. EPSS: 0.5% chance of exploitation in the next 30 days.

The get_bitmap_file function in drivers/md/md.c in the Linux kernel before 4.1.6 does not initialize a certain bitmap data structure, which allows local users to obtain sensitive information from kernel memory via a GET_BITMAP_FILE ioctl call.

Affected products

  • Linux Linux Kernel: up to and including 4.1.5

Published 2015-08-31. Last modified 2026-06-17.