Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于如果启用 NETIF_F_GRO_FRAGLIST 或 NETIF_F_GRO_UDP_FWD,并且系统中有可用的 UDP 隧道,则 udp_gro_receive() 最终可能会在外部 UDP 隧道级别为有效携带 UDP 隧道标头的数据包进行 L4 聚合。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 9fd1ff5d2ac7181844735806b0a703c942365291< 450687386cd16d081b58cd7a342acff370a96078 |
affected |
9fd1ff5d2ac7181844735806b0a703c942365291< 18f25dc399901426dff61e676ba603ff52c666f7 |
affected | ||
5.6 |
affected | ||
< 5.6 |
unaffected | ||
5.12.4≤ 5.12.* |
unaffected | ||
5.13≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-47013 | 9.8 CRITICAL | net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send |
| CVE-2021-46999 | 9.8 CRITICAL | sctp: do asoc update earlier in sctp_sf_do_dupcook_a |
| CVE-2021-47017 | 8.8 HIGH | ath10k: Fix a use after free in ath10k_htc_send_bundle |
| CVE-2021-47035 | 8.8 HIGH | iommu/vt-d: Remove WO permissions on second-level paging entries |
| CVE-2021-47049 | 8.4 HIGH | Drivers: hv: vmbus: Use after free in __vmbus_open() |
| CVE-2021-47040 | 7.8 HIGH | io_uring: fix overflows checks in provide buffers |
| CVE-2021-47048 | 7.8 HIGH | spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op |
| CVE-2021-46998 | 7.8 HIGH | ethernet:enic: Fix a use after free bug in enic_hard_start_xmit |
| CVE-2020-36787 | 7.8 HIGH | media: aspeed: fix clock handling logic |
| CVE-2021-46993 | 7.8 HIGH | sched: Fix out-of-bound access in uclamp |
| CVE-2021-46984 | 7.8 HIGH | kyber: fix out of bounds access when preempted |
| CVE-2020-36785 | 7.8 HIGH | media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() |
| CVE-2021-46992 | 7.8 HIGH | netfilter: nftables: avoid overflows in nft_hash_buckets() |
| CVE-2021-47014 | 7.8 HIGH | net/sched: act_ct: fix wild memory access when clearing fragments |
| CVE-2021-46977 | 7.8 HIGH | KVM: VMX: Disable preemption when probing user return MSRs |
| CVE-2021-47012 | 7.8 HIGH | RDMA/siw: Fix a use after free in siw_alloc_mr |
| CVE-2021-47011 | 7.8 HIGH | mm: memcontrol: slab: fix obtain a reference to a freeing memcg |
| CVE-2021-46983 | 7.5 HIGH | nvmet-rdma: Fix NULL deref when SEND is completed with error |
| CVE-2021-47001 | 7.5 HIGH | xprtrdma: Fix cwnd update ordering |
| CVE-2021-47041 | 7.5 HIGH | nvmet-tcp: fix incorrect locking in state_change sk callback |
Showing top 20 of 86 CVEs. View all on vendor page → →
No comments yet