漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A flaw was found in the ptp4l program of the linuxptp package. When ptp4l is operating on a little-endian architecture as a PTP transparent clock, a remote attacker could send a crafted one-step sync message to cause an information leak or crash. The highest threat from this vulnerability is to data confidentiality and system availability. This flaw affects linuxptp versions before 3.1.1 and before 2.0.1.
CVSS Information
N/A
Vulnerability Type
内存缓冲区边界内操作的限制不恰当
Vulnerability Title
ptp4l 缓冲区错误漏洞
Vulnerability Description
ptp4l是 IEEE 标准 1588 for Linux 的精确时间协议 (PTP) 的实现。 ptp4l 存在缓冲区错误漏洞,该漏洞源于当ptp4l在little-endian架构上作为PTP透明时钟运行时,远程攻击者可以发送精心设计的一步同步消息,导致信息泄漏或崩溃。
CVSS Information
N/A
Vulnerability Type
N/A