Linux Kernel contains a flaw in the net/tun subsystem that may lead to unauthorized disclosure of potentially sensitive information. The issue is due to a stack memory leak in iotcl(), which may allow a local attacker to gain access to 36 bytes of stack memory at a time.