Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20132
HistoryMay 16, 2019 - 3:58 a.m.

Out-Of-Bounds Read

2019-05-1603:58:18
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.001 Low

EPSS

Percentile

28.1%

Linux kernel is vulnerable to out-of-bounds read vulnerability. The vulnerability exists in the adjust_scalar_min_max_vals() function in kernel/bpf/verifier.c due to faulty computation of numeric bounds in the BPF verifier as it mishandles 32-bit right shifts causing an out-of-bounds memory access.