In the Linux kernel, the following vulnerability has been resolved: veth: ensure skb entering GRO are not cloned. After commit d3256efd8e8b ("veth: allow enabling NAPI even without XDP"), if GRO is…
高危 CVSS 7.8
摘要
In the Linux kernel, the following vulnerability has been resolved: veth: ensure skb entering GRO are not cloned. After commit d3256efd8e8b ("veth: allow enabling NAPI even without XDP"), if GRO is enabled on a veth device and TSO is disabled on the peer device, TCP skbs will go through the NAPI callback. If there is no XDP program attached, the veth code does not perform any share check, and shared/cloned skbs could enter the GRO engine. Ignat reported a BUG triggered later-on due to the ab…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/9695b7de5b4760ed22132aca919570c0190cb0ce Patch
- https://git.kernel.org/stable/c/d2269ae48598e05b59ec9ea9e6e44fd33941130d Patch
- https://git.kernel.org/stable/c/9695b7de5b4760ed22132aca919570c0190cb0ce Patch
- https://git.kernel.org/stable/c/d2269ae48598e05b59ec9ea9e6e44fd33941130d Patch
时间线
- nvd_ingest NVD