Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4xqq-q6wp-w8h4

Опубликовано: 23 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.

EPSS

Процентиль: 49%
0.00261
Низкий

7 High

CVSS3

Дефекты

CWE-362
CWE-416

Связанные уязвимости

CVSS3: 7
ubuntu
больше 3 лет назад

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.

CVSS3: 7.4
redhat
больше 3 лет назад

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.

CVSS3: 7
nvd
больше 3 лет назад

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.

CVSS3: 7
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7
debian
больше 3 лет назад

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem ...

EPSS

Процентиль: 49%
0.00261
Низкий

7 High

CVSS3

Дефекты

CWE-362
CWE-416