In the Linux kernel, the following vulnerability has been resolved: usb: typec: altmodes/displayport: validate count before reading Status Update VDO A broken/malicious device can send the incorrec…
提示
摘要
In the Linux kernel, the following vulnerability has been resolved: usb: typec: altmodes/displayport: validate count before reading Status Update VDO A broken/malicious device can send the incorrect count for a status update VDO, which will cause the kernel to read uninitialized stack data and send it off elsewhere. Fix this up by correctly verifying the count for the update object.
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://git.kernel.org/stable/c/64bd6ccc5799f8473d1f37d4d8f53093dfec5c02
- https://git.kernel.org/stable/c/6ffdbcd7a02f3af8fff9b6519830369f574ed44c
- https://git.kernel.org/stable/c/70e7045849e954e56dcbf441b6330e66bc996306
- https://git.kernel.org/stable/c/74aabe9ea30fdfba924fce9594e6aa69a596a4bb
- https://git.kernel.org/stable/c/77a759ec30bc5fb0dd9c867b711d0acfed6c7faa
- https://git.kernel.org/stable/c/8a18f896e667df491331371b55d4ad644dc51d60
- https://git.kernel.org/stable/c/b10eff5abe6aa2a5af10ed17bddff76e3b6e6b9b
- https://git.kernel.org/stable/c/dd7118c010f324497c275e8fd7a35c9baaa2a00f
时间线
- nvd_ingest NVD