[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2017-811 ---- kernel perf

ID: oval:org.secpod.oval:def:1600521Date: (C)2017-04-03   (M)2023-12-20
Class: PATCHFamily: unix




The skbs processed by ip_cmsg_recv are not guaranteed to be linear . Using csum_partial on potentially the whole skb len is dangerous; instead be on the safe side and use skb_checksum. This may lead to an infoleak as the kernel memory may be checksummed and sent as part of the packet. It was discovered that xfrm_replay_verify_len, as called by xfrm_new_ae, did not verify that the user-specified replay_window was within the replay state buffer. This allowed for out-of-bounds reads and writes of kernel memory.

Platform:
Amazon Linux AMI
Product:
kernel
perf
Reference:
ALAS-2017-811
CVE-2017-7184
CVE-2017-6347
CVE    2
CVE-2017-6347
CVE-2017-7184
CPE    5
cpe:/o:amazon:linux
cpe:/o:linux:linux_kernel
cpe:/o:linux:linux_kernel:4.8
cpe:/a:perf:perf
...

© SecPod Technologies