Keylime是Keylime的一个利用 TPM 技术的开源可扩展信任系统。 Keylime存在安全漏洞。攻击者利用该漏洞导致系统拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 9 | 0:6.5.2-6.el9_2 ~ * |
cpe:/a:redhat:enterprise_linux:9::appstream
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2023-3812 | 7.8 HIGH | Kernel: tun: bugs for oversize packet when napi frags enabled in tun_napi_alloc_frags |
| CVE-2023-3567 | 7.1 HIGH | Kernel: use after free in vcs_read in drivers/tty/vt/vc_screen.c due to race |
| CVE-2023-3640 | 7.0 HIGH | Kernel: x86/mm: a per-cpu entry area leak was identified through the init_cea_offsets func |
| CVE-2023-33952 | 6.7 MEDIUM | Kernel: vmwgfx: double free within the handling of vmw_buffer_object objects |
| CVE-2023-33951 | 6.7 MEDIUM | Kernel: vmwgfx: race condition leading to information disclosure vulnerability |
| CVE-2023-3750 | 6.5 MEDIUM | Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service |
| CVE-2023-3019 | 6.0 MEDIUM | Qemu: e1000e: heap use-after-free in e1000e_write_packet_to_guest() |
| CVE-2023-3745 | 5.5 MEDIUM | Imagemagick: heap-buffer-overflow in pushcharpixel() in quantum-private.h |
| CVE-2023-3384 | 5.4 MEDIUM | Quay: stored cross site scripting |
No comments yet