Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's Open vSwitch component was introduced by improper parsing of Netlink attributes in the output_userspace() function. This issue has been addressed by replacing the manual iteration of Netlink attributes with a nested attribute iteration method, ensuring that only well-formed attributes are processed.
The vulnerability could lead to improper handling of Netlink attributes, potentially allowing for exploitation through malformed attribute data.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.