Total vulnerabilities in the database
A flaw was found in the vhost library in DPDK. Function vhost_user_set_inflight_fd() does not validate msg->payload.inflight.num_queues
, possibly causing out-of-bounds memory read/write. Any software using DPDK vhost library may crash as a result of this vulnerability.
Software | From | Fixed in |
---|---|---|
dpdk / data_plane_development_kit | - | 22.03 |
dpdk / data_plane_development_kit | 22.03-rc2 | 22.03-rc2.x |
dpdk / data_plane_development_kit | 22.03-rc3 | 22.03-rc3.x |
dpdk / data_plane_development_kit | 22.03-rc1 | 22.03-rc1.x |
fedoraproject / fedora | 35 | 35.x |
redhat / enterprise_linux | 7.0 | 7.0.x |
redhat / enterprise_linux | 8.0 | 8.0.x |
redhat / enterprise_linux | 9.0 | 9.0.x |
redhat / enterprise_linux_fast_datapath | 7.0 | 7.0.x |
redhat / enterprise_linux_fast_datapath | 8.0 | 8.0.x |