Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r4f5-rm36-v672

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate packet lengths, which allows guest OS users to cause a denial of service (memory corruption and host OS crash) or possibly gain privileges on the host OS via crafted packets, related to the handle_rx and get_rx_bufs functions.

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate packet lengths, which allows guest OS users to cause a denial of service (memory corruption and host OS crash) or possibly gain privileges on the host OS via crafted packets, related to the handle_rx and get_rx_bufs functions.

EPSS

Процентиль: 49%
0.00254
Низкий

Дефекты

CWE-787

Связанные уязвимости

ubuntu
около 11 лет назад

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate packet lengths, which allows guest OS users to cause a denial of service (memory corruption and host OS crash) or possibly gain privileges on the host OS via crafted packets, related to the handle_rx and get_rx_bufs functions.

redhat
около 11 лет назад

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate packet lengths, which allows guest OS users to cause a denial of service (memory corruption and host OS crash) or possibly gain privileges on the host OS via crafted packets, related to the handle_rx and get_rx_bufs functions.

nvd
около 11 лет назад

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate packet lengths, which allows guest OS users to cause a denial of service (memory corruption and host OS crash) or possibly gain privileges on the host OS via crafted packets, related to the handle_rx and get_rx_bufs functions.

debian
около 11 лет назад

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable ...

oracle-oval
около 11 лет назад

ELSA-2014-3022: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 49%
0.00254
Низкий

Дефекты

CWE-787