Lucene search

K
osvGoogleOSV:CVE-2018-25020
HistoryDec 08, 2021 - 5:15 a.m.

CVE-2018-25020

2021-12-0805:15:07
Google
osv.dev
11
linux kernel
bpf subsystem
vulnerability
overflow
software
net/core/filter.c
kernel/bpf/core.c

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

12.6%

The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an instruction sequence where inner instructions require substantial expansions into multiple BPF instructions, leading to an overflow. This affects kernel/bpf/core.c and net/core/filter.c.