In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_policy The variable rmnet_link_ops assign a *bigger* maxtype which leads to a globa…
高危 CVSS 7.8
摘要
In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_policy The variable rmnet_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. See bug trace below: ================================================================== BUG: KASAN: global-out-of-bounds in validate_nla lib/nlattr.c:386 [inline] BUG: KASAN: global-out-of-bounds in __nla_validate_parse+0x24af/0x2750 lib/nla…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/02467ab8b404d80429107588e0f3425cf5fcd2e5 Patch
- https://git.kernel.org/stable/c/093dab655808207f7a9f54cf156240aeafc70590 Patch
- https://git.kernel.org/stable/c/17d06a5c44d8fd2e8e61bac295b09153496f87e1 Patch
- https://git.kernel.org/stable/c/2295c22348faf795e1ccdf618f6eb7afdb2f7447 Patch
- https://git.kernel.org/stable/c/3b5254862258b595662a0ccca6e9eeb88d6e7468 Patch
- https://git.kernel.org/stable/c/b33fb5b801c6db408b774a68e7c8722796b59ecc Patch
- https://git.kernel.org/stable/c/c4734535034672f59f2652e1e0058c490da62a5c Patch
- https://git.kernel.org/stable/c/ee1dc3bf86f2df777038506b139371a9add02534 Patch
- https://git.kernel.org/stable/c/02467ab8b404d80429107588e0f3425cf5fcd2e5 Patch
- https://git.kernel.org/stable/c/093dab655808207f7a9f54cf156240aeafc70590 Patch
- https://git.kernel.org/stable/c/17d06a5c44d8fd2e8e61bac295b09153496f87e1 Patch
- https://git.kernel.org/stable/c/2295c22348faf795e1ccdf618f6eb7afdb2f7447 Patch
- https://git.kernel.org/stable/c/3b5254862258b595662a0ccca6e9eeb88d6e7468 Patch
- https://git.kernel.org/stable/c/b33fb5b801c6db408b774a68e7c8722796b59ecc Patch
- https://git.kernel.org/stable/c/c4734535034672f59f2652e1e0058c490da62a5c Patch
- https://git.kernel.org/stable/c/ee1dc3bf86f2df777038506b139371a9add02534 Patch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html
- https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html
时间线
- nvd_ingest NVD