Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel related to improper management of kernel socket lifetimes has been addressed. During the exit phase of network operations, kernel sockets can be delayed in freeing due to transmission packets retained in device queues. This delay can trigger warnings about reference tracking, indicating that certain network resources are not being properly released. The vulnerability arises because kernel sockets do not maintain an adequate reference count, leading to potential resource management issues.
Exploitation of this vulnerability could result in improper reference counting for network sockets, causing resource management warnings and potentially leading to delayed cleanup of network resources.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.