Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gr4v-q65c-996m

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1, which is not properly handled.

An out-of-bound read can happen when user constructs a specially crafted ps_string, which in turn can cause the kernel to crash.

When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1, which is not properly handled.

An out-of-bound read can happen when user constructs a specially crafted ps_string, which in turn can cause the kernel to crash.

EPSS

Процентиль: 19%
0.00061
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 4.7
nvd
почти 2 года назад

When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1, which is not properly handled. An out-of-bound read can happen when user constructs a specially crafted ps_string, which in turn can cause the kernel to crash.

EPSS

Процентиль: 19%
0.00061
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-125