2019年10月4日 星期五

[LSN-0056-1] Linux kernel vulnerability

---------- Forwarded message ---------
From:
Date: Sep 23, 2019 11:23PM

Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may
be able to use this to cause a denial of service (host OS crash) or
possibly execute arbitrary code in the host OS. (CVE-2019-14835)

References:
  CVE-2019-14835

沒有留言:

張貼留言