In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: bound Read Response placement to the RREAD length In drivers/infiniband/sw/siw/siw_qp_rx.c, siw_proc_rresp() places eac…
严重 CVSS 9.8
摘要
In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: bound Read Response placement to the RREAD length In drivers/infiniband/sw/siw/siw_qp_rx.c, siw_proc_rresp() places each inbound Read Response DDP segment at sge->laddr + wqe->processed and then accumulates wqe->processed, but it never checks the running total against the sink buffer length on continuation segments. siw_check_sge() resolves and validates the sink memory only on the first fragment (the if (!*mem) bra…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/3ef7e052cbd05a8b13a51a07b185a39ec93ee1cf Patch
- https://git.kernel.org/stable/c/423a78ff7928c2601013f73ec6d896f5597d0df5 Patch
- https://git.kernel.org/stable/c/595e6537ad1a210da32cbb9a7f91aa73090915ba Patch
- https://git.kernel.org/stable/c/6bc89f34a4597f9f6d41f7a60c67a3153bfe8851 Patch
- https://git.kernel.org/stable/c/75c93cd3c421890f49ea93f0b978b9b7bb10e5e3 Patch
- https://git.kernel.org/stable/c/7d29f7e9dbd844cae4d3e559cf78324b9642fd6b Patch
- https://git.kernel.org/stable/c/a31b6d18ded3cc32d9ee85a6ff0726d4274887b2 Patch
- https://git.kernel.org/stable/c/b2e26c955f8dd7e8d3f16c858db05245ea4fa817 Patch
时间线
- nvd_ingest NVD