Lucene search

K
redosRedosROS-20240821-01
HistoryAug 21, 2024 - 12:00 a.m.

ROS-20240821-01

2024-08-2100:00:00
redos.red-soft.ru
5
linux kernel
vulnerability
resource reuse
race condition
denial of service
confidentiality
integrity
availability
netfilter
synchronization
memory

CVSS3

5.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

9.1

Confidence

High

The vulnerability of the kobject_add() function in the md component of the Linux operating system kernel is related to the lack of
releasing the previous state of a synchronization request before assigning a reference to a new one. Exploitation
the vulnerability could allow an attacker to cause a denial of service

Vulnerability of __unix_gc() function in net/unix/garbage.c module of Linux kernel is related to
competitive access to a resource (race condition). Exploitation of the vulnerability could allow an attacker to
affect confidentiality, integrity and availability of protected information

A vulnerability in the nft_pipapo_remove() function in the net/netfilter/nft_set_pipapo.c module of the netfilter component of the netfilter kernel of the
of the Linux operating system is related to the reuse of previously freed memory. Exploitation
the vulnerability could allow an attacker to cause a denial of service

A vulnerability in the __nf_tables_abort() function in the net/netfilter/nf_tables_api.c module of the netfilter component of the netfilter kernel of a Linux operating system is related to incorrect reuse of previously freed memory.
of Linux operating system is related to incorrect resource blocking. Exploitation of the vulnerability could
allow an intruder to affect confidentiality, integrity and availability of protected information.
information

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64kernel-lt< 6.1.94-1UNKNOWN

CVSS3

5.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

9.1

Confidence

High