漏洞信息详情
Linux kernel 资源管理错误漏洞
漏洞简介
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。
Linux kernel 5.2.6之前版本存在安全漏洞,该漏洞源于在NUMA系统上,Linux fair调度器在show NUMA stats()中有一个use-after-free,因为NUMA故障统计信息被不适当地释放.
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=16d51a590a8ce3befb1308e0e7ab77f3b661af33
参考网址
来源:MISC
链接:https://bugs.chromium.org/p/project-zero/issues/detail?id=1913
来源:MISC
链接:https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.6
来源:MISC
链接:https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=16d51a590a8ce3befb1308e0e7ab77f3b661af33
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.4391/
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2019-20934
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0589
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.2657
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Linux-kernel-use-after-free-via-show-numa-stats-33994
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.4410/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/163747/Red-Hat-Security-Advisory-2021-3016-01.html
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021072287
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/164652/Red-Hat-Security-Advisory-2021-3987-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.2461
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0166/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.3554
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0189/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/163607/Red-Hat-Security-Advisory-2021-2726-01.html
受影响实体
暂无
补丁
- Linux kernel 资源管理错误漏洞的修复措施<!--2020-11-28-->
还没有评论,来说两句吧...