Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an array index error), making out-of-bounds read and write operations possible, leading to an OOPS or local privilege escalation. This affects snmp_version and snmp_helper.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux kernel 输入验证错误漏洞
Vulnerability Description
Linux kernel是美国Linux基金会的发布的开源操作系统Linux所使用的内核。SNMP NAT是其中的一个SNMP NAT模块。 Linux kernel 4.20.12之前版本中的SNMP NAT模块存在安全漏洞,该漏洞源于程序没有充分地进行ASN.1长度检查。攻击者可利用该漏洞造成OOPS错误或提升权限。
CVSS Information
N/A
Vulnerability Type
N/A