• 公告ID (KylinSec-SA-2024-2988)

摘要:

In the Linux kernel, the following vulnerability has been resolved:

RDMA/irdma: Fix potential NULL-ptr-dereference

in_dev_get() can return NULL which will cause a failure once idev is
dereferenced in in_dev_for_each_ifa_rtnl(). This patch adds a
check for NULL value in idev beforehand.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

安全等级: Low

公告ID: KylinSec-SA-2024-2988

发布日期: 2024年7月2日

关联CVE: CVE-2023-52744  

  • 详细介绍

1. 漏洞描述

   

In the Linux kernel, the following vulnerability has been resolved:

RDMA/irdma: Fix potential NULL-ptr-dereference

in_dev_get() can return NULL which will cause a failure once idev is
dereferenced in in_dev_for_each_ifa_rtnl(). This patch adds a
check for NULL value in idev beforehand.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

2. 影响范围

cve名称 产品 组件 是否受影响
CVE-2023-52744 KY3.4-5A kernel Unaffected
CVE-2023-52744 KY3.5.2 kernel Unaffected
CVE-2023-52744 V6 kernel Unaffected

3. 影响组件

    无

4. 修复版本

    无

5. 修复方法

   无

6. 下载链接

    无
上一篇:KylinSec-SA-2024-2987 下一篇:KylinSec-SA-2024-2989