Описание
In the Linux kernel, the following vulnerability has been resolved:
s390/pkey: Check length in PKEY_VERIFYPROTK ioctl
Explicitly check the buffer length request structure provided by user-space and fail, if it exceeds the buffer size.
EPSS
7.8 High
CVSS3
Дефекты
Связанные уязвимости
A flaw was found in the Linux kernel. A missing buffer length check in the `PKEY_VERIFYPROTK ioctl` within the `s390/pkey` module allows a local attacker to provide a buffer length request that exceeds the allocated buffer size. This could lead to information disclosure by reading out-of-bounds memory or a denial of service by crashing the system.
In the Linux kernel, the following vulnerability has been resolved: s ...
In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Check length in PKEY_VERIFYPROTK ioctl Explicitly check the buffer length request structure provided by user-space and fail, if it exceeds the buffer size.
EPSS
7.8 High
CVSS3