Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability allowing out-of-bounds access in the relocation section has been identified in the Linux kernel RISC-V module. The issue arises because the code permits the relocation array to access an element beyond the end of the section. This vulnerability has been addressed by modifying the code to use 'num_relocations', which accurately reflects the size of the relocation section.
Exploitation of this vulnerability could lead to out-of-bounds memory access, potentially causing memory corruption or allowing for arbitrary code execution.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.