Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q945-mj3h-45f2

Опубликовано: 25 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

EPSS

Процентиль: 8%
0.00028
Низкий

7.8 High

CVSS3

Дефекты

CWE-367
CWE-667

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 3 года назад

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

CVSS3: 6.7
redhat
почти 3 года назад

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

CVSS3: 7.8
nvd
почти 3 года назад

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

CVSS3: 7.8
msrc
почти 3 года назад

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

CVSS3: 7.8
debian
почти 3 года назад

The specific flaw exists within the DPT I2O Controller driver. The iss ...

EPSS

Процентиль: 8%
0.00028
Низкий

7.8 High

CVSS3

Дефекты

CWE-367
CWE-667