CVE-2018-25020

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
4.6
MEDIUM
Affected
1
PROJECT

Description

The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an instruction sequence where inner instructions require substantial expansions into multiple BPF instructions, leading to an overflow. This affects kernel/bpf/core.c and net/core/filter.c.

Linux kernel source tree
GitHubGitHub
237K