Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30639
HistoryMay 24, 2021 - 9:17 a.m.

Denial Of Service (DoS)

2021-05-2409:17:59
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
20
denial of service
linux kernel
vulnerability
spectre
side-channel attacks
kernel memory
cid-10d2bb2e6b1d

EPSS

0.001

Percentile

16.0%

linux-gke-5.3:bionic is vulnerable to denial of service. An issue was discovered in the Linux kernel kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory, aka CID-10d2bb2e6b1d.