Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A use-after-free vulnerability has been identified in the Linux kernel's netem module. The issue arises because the backlog of the child queuing discipline (qdisc) is not properly managed before notifying the parent qdisc. This oversight can cause the parent qdisc to miss important updates, particularly in the Deficit Round Robin (DRR) scheduling algorithm, which relies on these notifications to function correctly.
Exploitation of this vulnerability can lead to a use-after-free condition, potentially allowing for arbitrary code execution or memory corruption.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.