Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-56649
HistoryApr 23, 2023 - 12:00 a.m.

Linux Kernel af_can.c Denial of Service Vulnerability

2023-04-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
linux kernel
null pointer dereference
denial of service
can protocol
net/can/af_can.c
ml_priv
system crash
exploited
attacker
cnvd

0.0004 Low

EPSS

Percentile

5.1%

Linux kernel is the kernel used by Linux, the open source operating system of the Linux Foundation in the United States. A denial of service vulnerability exists in the Linux Kernel that stems from a null pointer dereference issue found in the CAN protocol in net/can/af_can.c. ml_priv may not be initialized in the receive path of CAN frames, which could be exploited by an attacker to cause the system to crash or result in a denial of service.

CPENameOperatorVersion
linux linux kernellt6.1