Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple integer signedness errors in the TIPC implementation in the Linux kernel before 2.6.36.2 allow local users to gain privileges via a crafted sendmsg call that triggers a heap-based buffer overflow, related to the tipc_msg_build function in net/tipc/msg.c and the verify_iovec function in net/core/iovec.c.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux Kernel TIPC实现多个整数符号错误漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux kernel 2.6.36.2之前版本中的TIPC实现中存在多个整数符号错误漏洞。本地用户可以借助可触发基于堆的缓冲区溢出的特制sendmsg调用获取特权。该漏洞与net/tipc/msg.c中的tipc_msg_build函数以及net/core/iovec.c文件中的verify_iovec函数有关。
CVSS Information
N/A
Vulnerability Type
N/A