Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's fastrpc component could lead to memory corruption. This issue arises when the number of probed sessions exceeds the maximum defined in the device tree, causing the session count to overflow the fixed-size, slab-allocated session array. The vulnerability has been addressed by adding a necessary sanity check on the probed-session count.
Exploitation of this vulnerability could lead to memory corruption, potentially allowing for arbitrary code execution or causing a denial-of-service condition.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.