Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19173
HistoryMay 16, 2019 - 2:50 a.m.

Denial Of Service (DoS)

2019-05-1602:50:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

EPSS

0

Percentile

5.1%

Linux kernel is vulnerable to denial of service(DoS) attacks. This occurs in implementation of associative arrays where the add_key systemcall and KEYCTL_UPDATE operations allowed for a NULL payload with a nonzero length. When accessing the payload within this length parameters value, an unprivileged user could trivially cause a NULL pointer dereference.

References