Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's i40e network driver has been identified, where certain input from the device can cause an integer underflow. This underflow allows for Memory-Mapped Input/Output (MMIO) write access to an invalid memory page. The issue has been addressed by modifying the variable types involved to prevent the underflow.
Exploitation of this vulnerability could lead to unauthorized MMIO write operations on invalid memory pages, potentially causing memory corruption or other unintended behavior in the kernel.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.