Affected Versions:
Linux kernel 2.6.x
Vulnerability description:
Linux Kernel is the Kernel used by open source Linux. The args-> nr_local value provided by the user in the rds_cmsg_rdma_args () function of Linux Kernel is limited
Smaller than UINT_MAX. This restriction is not strict, because it may overflow when calculating the total iov_size,
As a result, sock_kmalloc () is allocated too small (). Local users can call rds_rdma_pages () with a large Count value to cause a crash. If no crash occurs,
Then, memory corruption will occur.
<* Reference
Http://marc.info /? L = linux-netdev & m = 129001184803080 & w = 2
*>
Vendor patch: Linux ----- the current manufacturer has released the upgrade patch to fix this security problem, please go to the vendor's home page download: http://marc.info /? L = linux-netdev & m = 129001184803080 & w = 2