In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in error path Sam Page (sam4k) working with Trend Micro Zero Day Initiative reported a UAF in the tipc_buf_append()…
严重 CVSS 9.8
摘要
In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in error path Sam Page (sam4k) working with Trend Micro Zero Day Initiative reported a UAF in the tipc_buf_append() error path: BUG: KASAN: slab-use-after-free in kfree_skb_list_reason+0x47e/0x4c0 linux/net/core/skbuff.c:1183 Read of size 8 at addr ffff88804d2a7c80 by task poc/8034 CPU: 1 PID: 8034 Comm: poc Not tainted 6.8.2 #1 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.0-debian-1.16.0-5…
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
- :
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/080cbb890286cd794f1ee788bbc5463e2deb7c2b Patch
- https://git.kernel.org/stable/c/21ea04aad8a0839b4ec27ef1691ca480620e8e14 Patch
- https://git.kernel.org/stable/c/367766ff9e407f8a68409b7ce4dc4d5a72afeab1 Patch
- https://git.kernel.org/stable/c/66116556076f0b96bc1aa9844008c743c8c67684 Patch
- https://git.kernel.org/stable/c/93bc2d6d16f2c3178736ba6b845b30475856dc40 Patch
- https://git.kernel.org/stable/c/a0fbb26f8247e326a320e2cb4395bfb234332c90 Patch
- https://git.kernel.org/stable/c/e19ec8ab0e25bc4803d7cc91c84e84532e2781bd Patch
- https://git.kernel.org/stable/c/ffd4917c1edb3c3ff334fce3704fbe9c39f35682 Patch
- https://git.kernel.org/stable/c/080cbb890286cd794f1ee788bbc5463e2deb7c2b Patch
- https://git.kernel.org/stable/c/21ea04aad8a0839b4ec27ef1691ca480620e8e14 Patch
- https://git.kernel.org/stable/c/367766ff9e407f8a68409b7ce4dc4d5a72afeab1 Patch
- https://git.kernel.org/stable/c/66116556076f0b96bc1aa9844008c743c8c67684 Patch
- https://git.kernel.org/stable/c/93bc2d6d16f2c3178736ba6b845b30475856dc40 Patch
- https://git.kernel.org/stable/c/a0fbb26f8247e326a320e2cb4395bfb234332c90 Patch
- https://git.kernel.org/stable/c/e19ec8ab0e25bc4803d7cc91c84e84532e2781bd Patch
- https://git.kernel.org/stable/c/ffd4917c1edb3c3ff334fce3704fbe9c39f35682 Patch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html Third Party Advisory
- https://security.netapp.com/advisory/ntap-20241018-0002/ Third Party Advisory
时间线
- nvd_ingest NVD