公告ID: KYLIN-2020-10942
安全等级: 重要
产品: Kylin V3
发布日期: 2020年3月22日
CVE: CVE-2020-10942
CVSS3评分: 7.4
概述:
None 描述:
In the Linux kernel before 5.5.8, get_raw_socket in drivers/vhost/net.c lacks validation of an sk_family field, which might allow attackers to trigger kernel stack corruption via crafted system calls. 系统版本:
KYLIN 3.0.x
KYLIN 3.2.x
KYLIN 3.3.x
KYLIN 3.3.x
KYLIN 3.3.x
KYLIN 3.4.x
KYLIN 3.4.x
受影响包列表:
kernel
kernel
kernel
kernel-alt
kernel-rt
kernel
kernel-rt