Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w56x-hj26-mq65

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.

EPSS

Процентиль: 8%
0.00032
Низкий

7 High

CVSS3

Дефекты

CWE-367
CWE-787

Связанные уязвимости

CVSS3: 7
ubuntu
почти 5 лет назад

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.

CVSS3: 7
redhat
почти 5 лет назад

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.

CVSS3: 7
nvd
почти 5 лет назад

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.

CVSS3: 7
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 7
debian
почти 5 лет назад

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5. ...

EPSS

Процентиль: 8%
0.00032
Низкий

7 High

CVSS3

Дефекты

CWE-367
CWE-787