Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability has been identified in the Linux kernel related to out-of-bounds (OOB) access in module handling. This issue arises when the section string header's size is improperly validated, allowing for the crafting of a module that triggers the OOB access. The vulnerability was observed in version 5.18.0-rc5.
Exploitation of this vulnerability leads to a page fault, causing a kernel panic and disrupting system operations.
The vulnerability can be reproduced by crafting a kernel module that manipulates the section string header's size. When this module is inserted into the kernel using the 'insmod' command, the improper size validation allows for out-of-bounds access, triggering a page fault and causing a kernel panic.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.