In the Linux kernel, the following vulnerability has been resolved: bpf: Fix OOB in pcpu_init_value An out-of-bounds read occurs when copying element from a BPF_MAP_TYPE_CGROUP_STORAGE map to anoth…
High CVSS 7.1
Summary
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix OOB in pcpu_init_value An out-of-bounds read occurs when copying element from a BPF_MAP_TYPE_CGROUP_STORAGE map to another pcpu map with the same value_size that is not rounded up to 8 bytes. The issue happens when: 1. A CGROUP_STORAGE map is created with value_size not aligned to 8 bytes (e.g., 4 bytes) 2. A pcpu map is created with the same value_size (e.g., 4 bytes) 3. Update element in 2 with data in 1 pcpu_…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/576afddfee8d1108ee299bf10f581593540d1a36 Patch
- https://git.kernel.org/stable/c/6086079e6d1c32ba4c4b422612b8aebb1129a96c Patch
- https://git.kernel.org/stable/c/634a793d0e1c822412095d25a1338f8831ad894c Patch
- https://git.kernel.org/stable/c/e0378419b0e20178b5d100b27c9cc7e51064202e Patch
- https://git.kernel.org/stable/c/e19c5ed9f1922a6854073f8651a63fa7be26e9e9 Patch
Timeline
- nvd_ingest NVD