Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-0210

Опубликовано: 09 янв. 2025
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2025-0210: dpdk security update (IMPORTANT)

[23.11-2]

  • Backport fixes for CVE-2024-11614 (RHEL-68601)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

dpdk

23.11-2.el9_5

dpdk-devel

23.11-2.el9_5

dpdk-doc

23.11-2.el9_5

dpdk-tools

23.11-2.el9_5

Oracle Linux x86_64

dpdk

23.11-2.el9_5

dpdk-devel

23.11-2.el9_5

dpdk-doc

23.11-2.el9_5

dpdk-tools

23.11-2.el9_5

Связанные CVE

Связанные уязвимости

CVSS3: 7.4
ubuntu
6 месяцев назад

An out-of-bounds read vulnerability was found in DPDK's Vhost library checksum offload feature. This issue enables an untrusted or compromised guest to crash the hypervisor's vSwitch by forging Virtio descriptors to cause out-of-bounds reads. This flaw allows an attacker with a malicious VM using a virtio driver to cause the vhost-user side to crash by sending a packet with a Tx checksum offload request and an invalid csum_start offset.

CVSS3: 7.4
redhat
6 месяцев назад

An out-of-bounds read vulnerability was found in DPDK's Vhost library checksum offload feature. This issue enables an untrusted or compromised guest to crash the hypervisor's vSwitch by forging Virtio descriptors to cause out-of-bounds reads. This flaw allows an attacker with a malicious VM using a virtio driver to cause the vhost-user side to crash by sending a packet with a Tx checksum offload request and an invalid csum_start offset.

CVSS3: 7.4
nvd
6 месяцев назад

An out-of-bounds read vulnerability was found in DPDK's Vhost library checksum offload feature. This issue enables an untrusted or compromised guest to crash the hypervisor's vSwitch by forging Virtio descriptors to cause out-of-bounds reads. This flaw allows an attacker with a malicious VM using a virtio driver to cause the vhost-user side to crash by sending a packet with a Tx checksum offload request and an invalid csum_start offset.

CVSS3: 7.4
msrc
6 месяцев назад

Описание отсутствует

CVSS3: 7.4
debian
6 месяцев назад

An out-of-bounds read vulnerability was found in DPDK's Vhost library ...