Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
blktrace (aka Block IO Tracing) 1.2.0, as used with the Linux kernel and Android, has a buffer overflow in the dev_map_read function in btt/devmap.c because the device and devno arrays are too small, as demonstrated by an invalid free when using the btt program with a crafted file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
blktrace 缓冲区错误漏洞
Vulnerability Description
blktrace(又名Block IO Tracing)是一款基于Linux的用来收集磁盘中的IO信息的工具。 blktrace 1.2.0版本中的btt/devmap.c文件的‘dev_map_read’函数存在缓冲区溢出漏洞,该漏洞源于设备和devno的数组太小。当与Linux kernel或Android使用时,攻击者可利用该漏洞执行任意代码或造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A