NTB: ntb_transport: Reject oversized TX buffers
21Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 7.5epss 0.5%
probabilidade de exploração
0.5%top 58% das CVEs
exploração observada
nãonenhuma fonte reporta
In the Linux kernel, the following vulnerability has been resolved:
NTB: ntb_transport: Reject oversized TX buffers
ntb_process_tx() handles an oversized buffer by calling tx_handler()
with a NULL data pointer and returning success. ntb_netdev therefore
neither frees the skb in its completion callback nor takes its enqueue
error path, leaking it.
Reject oversized buffers in ntb_transport_tx_enqueue() before acquiring
a queue entry and return -EMSGSIZE. The caller retains ownership of the
buffer, and the preceding netdev patch frees the skb when enqueue
returns this permanent error.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Produtos afetados
Linux · LinuxReferências
https://git.kernel.org/stable/c/4890152a3069f5cb58cc24b08cfd5fe95e568fa1https://git.kernel.org/stable/c/668aa3238548584ca9772da9cf43ae8c2389bbf1https://git.kernel.org/stable/c/6b6bbc6c878d64eacc60877df49fce7b1b6a08d0https://git.kernel.org/stable/c/75a604e9f1cfdebda421062fdf42225ca32154cdhttps://git.kernel.org/stable/c/9b0fa8a9e1057614a533cc3f18b17f82aab028d8https://git.kernel.org/stable/c/a4f2387db6f1cc2f03abba7f3a6807ad61e26ff7https://git.kernel.org/stable/c/a7f22105a7df8c7fd74d0af27ace6fa94fe03d87https://git.kernel.org/stable/c/b6db88cde0fb5c3bd2d3cd2bebcc06b5ce146e88