Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A use-after-free vulnerability has been addressed in the Linux kernel's handling of virtual function ports on BlueField devices. This issue arose because the ingress ACL table for the virtual ports was not properly destroyed during the shutdown process, leading to a use-after-free condition. The vulnerability is related to the ECVF functionality, which operates independently of the ECPF vport existence capability.
Exploitation of this vulnerability could lead to a use-after-free condition, allowing for potential memory corruption or arbitrary code execution.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.