[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2015-3094 -- Oracle kernel-uek_ofa_mlnx_en

ID: oval:org.secpod.oval:def:1501211Date: (C)2015-12-15   (M)2024-01-29
Class: PATCHFamily: unix




The virtnet_probe function in drivers/net/virtio_net.c in the Linux kernel attempts to support a FRAGLIST feature without proper memory allocation, which allows guest OS users to cause a denial of service (buffer overflow and memory corruption) via a crafted sequence of fragmented packets.

Platform:
Oracle Linux 5
Product:
kernel-uek
ofa uek
ofa uekdebug
mlnx_en uek
mlnx_en uekdebug
Reference:
ELSA-2015-3094
CVE-2015-5156
CVE    1
CVE-2015-5156
CPE    6
cpe:/a:oracle:mlnx_en_uek
cpe:/a:oracle:ofa_uekdebug
cpe:/a:oracle:mlnx_en_uekdebug
cpe:/o:oracle:kernel-uek
...

© SecPod Technologies