Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's handling of softirq can lead to scheduling issues when the Kunpeng920 encryption driver is used. This driver, during packet decryption and encryption in softirq, improperly employs a mutex lock, causing the kernel to generate a scheduling error. The issue arises in the Hisilicon SEC crypto implementation, where the encryption process interferes with the normal interrupt handling, leading to potential performance degradation or missed network packets.
Exploitation of this vulnerability can cause the kernel to mismanage task scheduling, potentially leading to performance issues or disruptions in network packet processing.
The vulnerability can be reproduced by using the Kunpeng920 encryption driver to encrypt and decrypt packets during a softirq. This will cause the kernel to report a scheduling error, indicating that a mutex lock was improperly used while the system was handling interrupts.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.