Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The sg_build_indirect function in drivers/scsi/sg.c in Linux kernel 2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing an array, which allows local users to cause a denial of service (kernel OOPS and NULL pointer dereference), as demonstrated by using xcdroast to duplicate a CD. NOTE: this is only exploitable by users who can open the cdrom device.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux kernel拒绝服务漏洞
Vulnerability Description
当访问一个数组时,Linux kernel 2.6.28-rc1到2.6.31-rc8版本的drivers/scsi/sg.c中的sg_build_indirect函数会使用一个不正确的变量,这使得本地用户可以引起拒绝服务攻击(内核OOPS和空指针引用),比如使用xcdroast来复制一个CD。
CVSS Information
N/A
Vulnerability Type
N/A