Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vwm6-3cgq-cw2w

Опубликовано: 21 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c of the component IPsec. The manipulation leads to memory leak. It is recommended to apply a patch to fix this issue. VDB-211930 is the identifier assigned to this vulnerability.

A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c of the component IPsec. The manipulation leads to memory leak. It is recommended to apply a patch to fix this issue. VDB-211930 is the identifier assigned to this vulnerability.

EPSS

Процентиль: 8%
0.00032
Низкий

3.3 Low

CVSS3

Дефекты

CWE-401
CWE-404

Связанные уязвимости

CVSS3: 2.6
ubuntu
больше 2 лет назад

A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c. The manipulation leads to memory leak. The complexity of an attack is rather high. The exploitation appears to be difficult. It is recommended to apply a patch to fix this issue. VDB-211930 is the identifier assigned to this vulnerability.

CVSS3: 3.3
redhat
почти 3 года назад

A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c. The manipulation leads to memory leak. The complexity of an attack is rather high. The exploitation appears to be difficult. It is recommended to apply a patch to fix this issue. VDB-211930 is the identifier assigned to this vulnerability.

CVSS3: 2.6
nvd
больше 2 лет назад

A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c. The manipulation leads to memory leak. The complexity of an attack is rather high. The exploitation appears to be difficult. It is recommended to apply a patch to fix this issue. VDB-211930 is the identifier assigned to this vulnerability.

CVSS3: 2.6
debian
больше 2 лет назад

A vulnerability was found in Linux Kernel. It has been declared as pro ...

CVSS3: 3.5
fstec
почти 3 года назад

Уязвимость функции vsock_connect() модуля net/vmw_vsock/af_vsock.c компонента IPsec ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 8%
0.00032
Низкий

3.3 Low

CVSS3

Дефекты

CWE-401
CWE-404