Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's overlay filesystem implementation has been addressed. The issue involved the improper use of the 'buf' flexible array as the destination for the memcpy() function. This misallocation triggered a false positive runtime warning due to recent FORTIFY_SOURCE hardening, which detected a field-spanning write issue.
The vulnerability could lead to runtime warnings that may obscure other important messages, potentially causing confusion during system operation or troubleshooting.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.