Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-38wf-932f-qv6q

Опубликовано: 14 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check in the wrong place. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check in the wrong place. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

EPSS

Процентиль: 2%
0.00013
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 6.7
ubuntu
больше 2 лет назад

In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check in the wrong place. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.7
nvd
больше 2 лет назад

In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check in the wrong place. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.7
debian
больше 2 лет назад

In multiple functions of mem_protect.c, there is a possible way to acc ...

CVSS3: 6.7
fstec
больше 2 лет назад

Уязвимость функции __check_page_state_visitor() в модуле arch/arm64/kvm/hyp/nvhe/mem_protect.c подсистемы виртуализации KVM ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 2%
0.00013
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-119