In the Linux kernel, the following vulnerability has been resolved: isofs: fix out-of-bounds page array access on empty zisofs block zisofs_uncompress_block()'s empty-block fast path returns pcount…
提示
摘要
In the Linux kernel, the following vulnerability has been resolved: isofs: fix out-of-bounds page array access on empty zisofs block zisofs_uncompress_block()'s empty-block fast path returns pcount << PAGE_SHIFT, ignoring the incoming poffset, unlike the decompression path which returns bytes produced relative to poffset. zisofs_fill_pages() uses that return to advance its page cursor, so when the zisofs block size is below PAGE_SIZE and a sub-page block leaves poffset partway into a page, a …
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/68d4d3e78150c7ed7d1195af63ad1e6ace30c661
- https://git.kernel.org/stable/c/85904076cece72ee3194646ad7ac8e6659d999aa
- https://git.kernel.org/stable/c/8b994ac5778a725982fd6a8a3afcaa068d4a93e3
- https://git.kernel.org/stable/c/9c6eace8d07e90f038c89eb3b756d65a7e259d48
- https://git.kernel.org/stable/c/ad3249cdf9d4ba34bb8b1ff3956a4020fdfb5b0a
- https://git.kernel.org/stable/c/cd616aa0449a772a6956abf03358f0ff31720580
- https://git.kernel.org/stable/c/f03425dcbe04aec3c27b9917e97d7d23a2908dda
时间线
- nvd_ingest NVD