Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7g7-fmmr-xhp8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6

Описание

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

EPSS

Процентиль: 7%
0.0003
Низкий

6 Medium

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 6
ubuntu
почти 5 лет назад

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

CVSS3: 6.7
redhat
почти 5 лет назад

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

CVSS3: 6
nvd
почти 5 лет назад

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

CVSS3: 6
msrc
почти 5 лет назад

Описание отсутствует

CVSS3: 6
debian
почти 5 лет назад

In the Linux kernel through 5.8.7, local attackers able to inject conn ...

EPSS

Процентиль: 7%
0.0003
Низкий

6 Medium

CVSS3

Дефекты

CWE-120