Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's Crypto QAT (QuickAssist Technology) component could lead to an integer underflow. This issue arises when RSAReject requests contain a source buffer larger than the key size, allowing for improper copying of the source scatterlist into a linear buffer. The vulnerability has been addressed by adding parameter checks to reject such requests.
Exploitation of this vulnerability could cause an integer underflow, potentially leading to memory corruption or other unintended behavior.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.