Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9x5q-ww2j-jw9x

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be used by local users for denial of service.

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be used by local users for denial of service.

EPSS

Процентиль: 23%
0.00078
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 8 лет назад

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be used by local users for denial of service.

CVSS3: 4.7
redhat
около 8 лет назад

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be used by local users for denial of service.

CVSS3: 5.5
nvd
около 8 лет назад

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be used by local users for denial of service.

CVSS3: 5.5
debian
около 8 лет назад

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unrea ...

suse-cvrf
почти 8 лет назад

Security update for the Linux Kernel

EPSS

Процентиль: 23%
0.00078
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-20