Linux Kernel Integer Overflow Vulnerability in IMA Appraisal

Vulnerability

A potential integer overflow vulnerability has been identified in the Linux kernel's Integrity Measurement Architecture (IMA) appraise feature. When the IMA module signature verification is enabled, a negative return code passed to the 'evm_verifyxattr()' function could lead to an integer overflow.

Impact

Exploitation of this vulnerability could result in an integer overflow, which may be leveraged to cause unexpected behavior in the kernel, potentially leading to memory corruption or other vulnerabilities that could be exploited.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.