Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
drivers/infiniband/core/ucma.c in the Linux kernel through 4.17.11 allows ucma_leave_multicast to access a certain data structure after a cleanup step in ucma_process_join, which allows attackers to cause a denial of service (use-after-free).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux kernel 安全漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。 Linux kernel 4.17.11及之前版本中的drivers/infiniband/core/ucma.c文件存在安全漏洞,该漏洞源于‘ucma_process_join’函数在进行释放操作之后,‘ucma_leave_multicast’函数仍然可以访问被释放的数据结构。攻击者可利用该漏洞造成拒绝服务(释放后重用)。
CVSS Information
N/A
Vulnerability Type
N/A