Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability has been identified in the Linux kernel's ice driver, specifically related to the handling of the transmit (Tx) scheduler when an eXpress Data Path (XDP) program is loaded. The issue arises because the XDP callback adds new Tx queues but fails to properly roll back changes if the Tx scheduler encounters an error. This flaw can lead to a general protection fault, causing a crash. The vulnerability has been addressed by ensuring that all changes made by the XDP callback are properly reverted in case of a failure, and by adding an immediate exit from the XDP callback if ring preparation fails.
Exploitation of this vulnerability can lead to a general protection fault, causing a system crash.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.