Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in the ion_ioctl function in drivers/staging/android/ion/ion.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) by calling ION_IOC_FREE on two CPUs at the same time.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux kernel 竞争条件漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux kernel 4.6之前版本中的drivers/staging/android/ion/ion.c文件的‘the ion_ioctl’函数存在竞争条件漏洞。本地攻击者可通过在同一时间内访问两个CPU上的‘ION_IOC_FREE’利用该漏洞获取权限或造成拒绝服务(释放后重用)。
CVSS Information
N/A
Vulnerability Type
N/A