Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP...
High severity
Unreviewed
Published
Apr 29, 2022
to the GitHub Advisory Database
•
Updated Feb 18, 2024
Description
Published by the National Vulnerability Database
Dec 31, 2004
Published to the GitHub Advisory Database
Apr 29, 2022
Last updated
Feb 18, 2024
Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which causes kmalloc to allocate 0 bytes of memory.
References