5.5

CVE-2021-47109

neighbour: allow NUD_NOARP entries to be forced GCed

In the Linux kernel, the following vulnerability has been resolved:

neighbour: allow NUD_NOARP entries to be forced GCed

IFF_POINTOPOINT interfaces use NUD_NOARP entries for IPv6. It's possible to
fill up the neighbour table with enough entries that it will overflow for
valid connections after that.

This behaviour is more prevalent after commit 58956317c8de ("neighbor:
Improve garbage collection") is applied, as it prevents removal from
entries that are not NUD_FAILED, unless they are more than 5s old.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.0 < 5.4.125
Linux ≫ Linux Kernel Version >= 5.5 < 5.10.43
Linux ≫ Linux Kernel Version >= 5.11 < 5.12.10
Linux ≫ Linux Kernel Version 5.13 Update rc1
Linux ≫ Linux Kernel Version 5.13 Update rc2
Linux ≫ Linux Kernel Version 5.13 Update rc3
Linux ≫ Linux Kernel Version 5.13 Update rc4
Linux ≫ Linux Kernel Version 5.13 Update rc5
Linux ≫ Linux Kernel Version 5.13 Update rc6
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.68% 0.49
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-190 Integer Overflow or Wraparound

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

https://git.kernel.org/stable/c/7a6b1ab7475fd6478eeaf5c9d1163e7a18125c8f
Patch
https://git.kernel.org/stable/c/d17d47da59f726dc4c87caebda3a50333d7e2fd3
Patch
https://git.kernel.org/stable/c/d99029e6aab62aef0a0251588b2867e77e83b137
Patch
https://git.kernel.org/stable/c/ddf088d7aaaaacfc836104f2e632b29b1d383cfc
Patch