Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The CIL compiler in SELinux 3.2 has a heap-based buffer over-read in ebitmap_match_any (called indirectly from cil_check_neverallow). This occurs because there is sometimes a lack of checks for invalid statements in an optional block.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SELinux 缓冲区错误漏洞
Vulnerability Description
SELinux是美国国家安全局(National Security Agency)的一种采用安全架构的Linux子系统,它能够让管理员更好地管控哪些人可以访问系统。 SELinux 3.2版本存在缓冲区错误漏洞,该漏洞源于SELinux 3.2中的CIL编译器在"ebitmap match any"中有一个基于堆的缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A