In the Linux kernel, the following vulnerability has been resolved: thunderbolt: property: Reject dir_len < 4 to prevent size_t underflow On the non-root path, __tb_property_parse_dir() takes dir_l…
提示
摘要
In the Linux kernel, the following vulnerability has been resolved: thunderbolt: property: Reject dir_len < 4 to prevent size_t underflow On the non-root path, __tb_property_parse_dir() takes dir_len from entry->length (u16 widened to size_t). Two distinct OOB conditions follow when entry->length < 4: 1. The non-root path begins with kmemdup(&block[dir_offset], sizeof(*dir->uuid), ...) which always reads 4 dwords from dir_offset. tb_property_entry_valid() only enforces dir_offset …
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/37abc4504fa19d8f9f1e87792e8a2b8fdb308e40
- https://git.kernel.org/stable/c/3bec49ca55e08fb085cc4318f24b1b37eaab28cb
- https://git.kernel.org/stable/c/542a13890b742099c461d70920e97b14e568f6ec
- https://git.kernel.org/stable/c/5506c825f14d810f0690b1f4367cb7249ebb387a
- https://git.kernel.org/stable/c/d548179adcc87e1bc66b17e00352a1f536e76065
- https://git.kernel.org/stable/c/de21b59c29e31c5108ddc04210631bbfab81b997
- https://git.kernel.org/stable/c/de618299190b418291609e6921557253bd417e25
- https://git.kernel.org/stable/c/e2d4d51cf5785815fa4e91e0c019e3eb2506a84c
时间线
- nvd_ingest NVD