Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5r2r-5wx4-7x33

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.

A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.

EPSS

Процентиль: 24%
0.00078
Низкий

7.8 High

CVSS3

Дефекты

CWE-415
CWE-460

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 лет назад

A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.

CVSS3: 7.8
redhat
больше 2 лет назад

A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.

CVSS3: 7.8
nvd
около 2 лет назад

A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.

CVSS3: 7.8
debian
около 2 лет назад

A double-free flaw was found in the Linux kernel\u2019s TUN/TAP device ...

CVSS3: 7.8
fstec
больше 3 лет назад

Уязвимость функции tun_free_netdev() виртуальных сетевых драйверов TUN/TAP ядра операционных систем Linux, позволяющая нарушителю вызвать отказ в обслуживании или повысить свои привилегии

EPSS

Процентиль: 24%
0.00078
Низкий

7.8 High

CVSS3

Дефекты

CWE-415
CWE-460