[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195521

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2020-14378 -- dpdk

ID: oval:org.secpod.oval:def:2004039Date: (C)2020-10-08   (M)2023-11-13
Class: VULNERABILITYFamily: unix




An integer underflow in dpdk versions before 18.11.10 and before 19.11.5 in the `move_desc` function can lead to large amounts of CPU cycles being eaten up in a long running loop. An attacker could cause `move_desc` to get stuck in a 4,294,967,295-count iteration loop. Depending on how `vhost_crypto` is being used this could prevent other VMs or network tasks from being serviced by the busy DPDK lcore for an extended period.

Platform:
Debian 10.x
Debian 9.x
Product:
dpdk
Reference:
CVE-2020-14378
CVE    1
CVE-2020-14378
CPE    3
cpe:/o:debian:debian_linux:10.x
cpe:/a:dpdk:dpdk
cpe:/o:debian:debian_linux:9.x

© SecPod Technologies