Kernel Live Patch Security Notice LNS-0093-1

Discussion in 'News Aggregator' started by Packet Storm, 31 Mar 2023.

  1. Packet Storm

    Packet Storm Guest

    Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. It was discovered that the Upper Level Protocol (ULP) subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.

    Continue reading...
     

Share This Page

Loading...