In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix READDIR buffer overflow If a client sends a READDIR count argument that is too small (say, zero), then the buffer size …
严重 CVSS 9.8
摘要
In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix READDIR buffer overflow If a client sends a READDIR count argument that is too small (say, zero), then the buffer size calculation in the new init_dirlist helper functions results in an underflow, allowing the XDR stream functions to write beyond the actual buffer. This calculation has always been suspect. NFSD has never sanity- checked the READDIR count argument, but the old entry encoders managed the problem corr…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/53b1119a6e5028b125f431a0116ba73510d82a72 Exploit
- https://git.kernel.org/stable/c/9e291a6a28d32545ed2fd959a8165144d1724df1 Exploit
- https://git.kernel.org/stable/c/eabc0aab98e5218ceecd82069b0d6fdfff5ee885 Exploit
- https://git.kernel.org/stable/c/53b1119a6e5028b125f431a0116ba73510d82a72 Exploit
- https://git.kernel.org/stable/c/9e291a6a28d32545ed2fd959a8165144d1724df1 Exploit
- https://git.kernel.org/stable/c/eabc0aab98e5218ceecd82069b0d6fdfff5ee885 Exploit
- https://cert-portal.siemens.com/productcert/html/ssa-265688.html
时间线
- nvd_ingest NVD