Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Amazon AWS Firecracker before 0.21.3, and 0.22.x before 0.22.1, the serial console buffer can grow its memory usage without limit when data is sent to the standard input. This can result in a memory leak on the microVM emulation thread, possibly occupying more memory than intended on the host.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Amazon Firecracker 缓冲区错误漏洞
Vulnerability Description
Amazon Firecracker是美国亚马逊(Amazon)公司的一种专门用于创建和管理多租户容器和基于函数的服务的虚拟化技术。它是一种虚拟化技术,提供 Serverless 操作模型,专门用于创建和管理多租户容器与基于函数的服务。 Amazon AWS Firecracker 0.21.3版本,和0.22.x系列0.22.1之前版本存在缓冲区错误漏洞,该漏洞源于当数据被发送到标准输入时,串行控制台缓冲区可以无限制地增加其内存使用量。这可能会导致microVM模拟线程上的内存泄漏,可能会占用比预期主机
CVSS Information
N/A
Vulnerability Type
N/A