In the Linux kernel, the following vulnerability has been resolved: net: hsr: fix potential OOB access in supervision frame handling Ensure the entire TLV header is linearized before access by addi…
Info
Summary
In the Linux kernel, the following vulnerability has been resolved: net: hsr: fix potential OOB access in supervision frame handling Ensure the entire TLV header is linearized before access by adding sizeof(struct hsr_sup_tlv) to the pskb_may_pull() calls. Without this, a truncated frame could cause an out-of-bounds access.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/09a37dca090c55ffb1a33f52d8667f1c2367ef48
- https://git.kernel.org/stable/c/71c986c0ba45b7dc574fae27c83e7b6671556f37
- https://git.kernel.org/stable/c/78607a6854a22a2502f68092202e75a39af4865d
- https://git.kernel.org/stable/c/a4b64f3e9c7b8259f7dd251a0313420ba7c01852
- https://git.kernel.org/stable/c/f229426072fc865654a60978bb7fda790a051ff3
- https://git.kernel.org/stable/c/fbd0662f9c9a66e8cc3df3099cca8ed6d3837cc7
Timeline
- nvd_ingest NVD