Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cm7q-3wq8-gx9w

Опубликовано: 17 сент. 2026
Источник: github
Github: Не прошло ревью

Описание

In the Linux kernel, the following vulnerability has been resolved:

RDMA/nldev: validate dynamic counter attribute length

RDMA_NLDEV_ATTR_STAT_HWCOUNTERS is a nested attribute whose children are consumed directly with nla_get_u32(). The top-level policy validates only the container, so it does not establish the fixed shape of each child.

Require every child payload to be exactly one u32 before reading it.

In the Linux kernel, the following vulnerability has been resolved:

RDMA/nldev: validate dynamic counter attribute length

RDMA_NLDEV_ATTR_STAT_HWCOUNTERS is a nested attribute whose children are consumed directly with nla_get_u32(). The top-level policy validates only the container, so it does not establish the fixed shape of each child.

Require every child payload to be exactly one u32 before reading it.

EPSS

Процентиль: 7%
0.00172
Низкий

Связанные уязвимости

ubuntu
7 дней назад

(In the Linux kernel, the following vulnerability has been resolved: R ...)

nvd
7 дней назад

In the Linux kernel, the following vulnerability has been resolved: RDMA/nldev: validate dynamic counter attribute length RDMA_NLDEV_ATTR_STAT_HWCOUNTERS is a nested attribute whose children are consumed directly with nla_get_u32(). The top-level policy validates only the container, so it does not establish the fixed shape of each child. Require every child payload to be exactly one u32 before reading it.

CVSS3: 5.5
msrc
2 дня назад

RDMA/nldev: validate dynamic counter attribute length

debian
7 дней назад

In the Linux kernel, the following vulnerability has been resolved: R ...

EPSS

Процентиль: 7%
0.00172
Низкий