Vigil@nce - Linux kernel: integer overflow via Scalar32_min_max_or

Vigil@nce - Linux kernel: integer overflow via Scalar32_min_max_or

This bulletin was written by Vigil@nce : https://vigilance.fr/computer-vulne...


SYNTHESIS OF THE VULNERABILITY


Impacted products: Linux, Ubuntu.


Severity: 2/4.


Consequences: administrator access/rights, denial of service on server.


Provenance: user shell.


Confidence: confirmed by the editor (5/5).


Creation date: 19/10/2020.


DESCRIPTION OF THE VULNERABILITY


An attacker can trigger an integer overflow via Scalar32_min_max_or of the Linux kernel, in order to trigger a denial of service, and possibly to run code.


ACCESS TO THE FULL VIGIL@NCE BULLETIN


https://vigilance.fr/vulnerability/...



Support the originator by clicking the read the rest link below.