Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g7f3-4crr-9hfj

Опубликовано: 11 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.

EPSS

Процентиль: 1%
0.00013
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-121
CWE-787

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.

CVSS3: 5.5
redhat
больше 1 года назад

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.

CVSS3: 5.5
nvd
больше 1 года назад

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.

CVSS3: 5.5
msrc
около 1 года назад

Описание отсутствует

CVSS3: 5.5
debian
больше 1 года назад

A vulnerability was reported in the Open vSwitch sub-component in the ...

EPSS

Процентиль: 1%
0.00013
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-121
CWE-787