PublicDate: 2004-06-01 04:00:00 UTC Candidate: CVE-2004-0177 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0177 Description: The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an information leak in which in-memory data is written to the device for the ext3 file system, which allows privileged users to obtain portions of kernel memory by reading the raw device. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_kernel-source-2.4.27: released (2.4.27-12) edgy_kernel-source-2.4.27: released (2.4.27-12) feisty_kernel-source-2.4.27: DNE devel_kernel-source-2.4.27: DNE upstream_kernel-source-2.4.27: needs-triage