In the Linux kernel before 2.6.20, there is an off-by-one...
Critical severity
Unreviewed
Published
Apr 21, 2022
to the GitHub Advisory Database
•
Updated Feb 28, 2024
Description
Published by the National Vulnerability Database
Jul 27, 2019
Published to the GitHub Advisory Database
Apr 21, 2022
Last updated
Feb 28, 2024
In the Linux kernel before 2.6.20, there is an off-by-one bug in net/netlabel/netlabel_cipso_v4.c where it is possible to overflow the doi_def->tags[] array.
References