摘要:
In the Linux kernel, the following vulnerability has been resolved:
riscv, bpf: Fix potential NULL dereference
The bpf_jit_binary_free() function requires a non-NULL argument. When
the RISC-V BPF JIT fails to converge in NR_JIT_ITERATIONS steps,
jit_data->header will be NULL, which triggers a NULL
dereference. Avoid this by checking the argument, prior calling the
function.
安全等级: Low
公告ID: KylinSec-SA-2024-2634
发布日期: 2024年6月6日
关联CVE: CVE-2021-47486
In the Linux kernel, the following vulnerability has been resolved:
riscv, bpf: Fix potential NULL dereference
The bpf_jit_binary_free() function requires a non-NULL argument. When
the RISC-V BPF JIT fails to converge in NR_JIT_ITERATIONS steps,
jit_data->header will be NULL, which triggers a NULL
dereference. Avoid this by checking the argument, prior calling the
function.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2021-47486 | KY3.4-5A | kernel | Unaffected |
CVE-2021-47486 | KY3.5.2 | kernel | Unaffected |
CVE-2021-47486 | V6 | kernel | Unaffected |