Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A data-race vulnerability has been identified in the Linux kernel's IP forwarding mechanism, specifically regarding the 'sysctl_ip_fwd_use_pmtu' setting. This vulnerability arises because the value can be changed concurrently while it is being read, potentially leading to inconsistent behavior. The issue has been addressed by adding a 'READ_ONCE()' directive to the readers of this sysctl parameter.
Exploitation of this vulnerability could lead to data inconsistency issues, where the IP forwarding behavior does not correctly reflect the intended configuration, potentially causing network performance problems or routing errors.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.