In the Linux kernel, the following vulnerability has been resolved: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access The page_ext iteration API does not validate if…
中危 CVSS 5.5
摘要
In the Linux kernel, the following vulnerability has been resolved: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access The page_ext iteration API does not validate if the PFN still belongs to a valid section while advancing the iterator. When dynamically adding memory in the hotplug path, it can lead to a NULL pointer dereference during page_ext_lookup at the boundary of the last valid section when iterator count equals __pgcount. The for_each_page_ext() macro…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/377b1cd6bbcf327338cd951cc2fd74bc75540235 Patch
- https://git.kernel.org/stable/c/8dcaa0f87a88d720d13106f3a306c6b61d189d86 Patch
- https://git.kernel.org/stable/c/ffd017237cfe99e6e5602ab14179b0e6878a0840 Patch
时间线
- nvd_ingest NVD