diff --git a/vulns/CVE-2025-68292.yml b/vulns/CVE-2025-68292.yml new file mode 100644 index 0000000..93047c3 --- /dev/null +++ b/vulns/CVE-2025-68292.yml @@ -0,0 +1,10 @@ +reachability: local +memory_corruption: false +bug_class: Uninitialized memory read +impact: Info leak +privileges_required: false +notes: |2- + Kernel exposes un-zeroed hugetlb pages placed in page cache, user can then + mmap/read to leak kernel memory. +author: Oracle Corporation +version: v0.1