Inappropriate coding practices In linux

Description

An information disclosure vulnerability was found in the Linux kernel's block layer integrity handling. When auto-generating integrity buffers for writes with protection information (PI) enabled, the non-PI portion of the metadata buffer is left uninitialized if the metadata size exceeds the PI tuple size. This uninitialized kernel memory can be read back by userspace or anyone with physical access to the storage device.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions