Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hcc-583p-2372

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.

EPSS

Процентиль: 26%
0.00086
Низкий

7.8 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 7.8
nvd
больше 20 лет назад

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.

CVSS3: 7.8
debian
больше 20 лет назад

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in ...

EPSS

Процентиль: 26%
0.00086
Низкий

7.8 High

CVSS3

Дефекты

CWE-190