Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel 취약점
In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Add bounds checking in nci_hci_create_pipe() The "pipe" variable is a u8 which comes from the network. If it's more than 127, then it results in memory corruption in the caller, nci_hci_connect_gate().
In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Add bounds checking in nci_hci_create_pipe() The "pipe" variable is a u8 which comes from the network. If it's more than 127, then it results in memory corruption in the caller, nci_hci_connect_gate().
영향 제품·버전
제품 Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel
Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel의 현재 전체 버전이 공식 영향 범위(Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel >= a1b0b9415817c14d207921582f269d03f848b69f < bd249109d266f1d52548c46634a15b71656e0d44, >= a1b0b9415817c14d207921582f269d03f848b69f < 674e17c5933779a8bf5c15d596fdfcb5ccdebbc2, >= a1b0b9415817c14d207921582f269d03f848b69f < 10b3f947b609713e04022101f492d288a014ddfa, >= a1b0b9415817c14d207921582f269d03f848b69f < d5a461c315e5ff92657f84d8ba50caa5abf5c22a, >= a1b0b9415817c14d207921582f269d03f848b69f < 172cdfc3a5ea20289c58fb73dadc6fd4a8784a4e, >= a1b0b9415817c14d207921582f269d03f848b69f < 2ae4bade5a64d126bd18eb66bd419005c5550218, >= a1b0b9415817c14d207921582f269d03f848b69f < 59c7ed20217c0939862fbf8145bc49d5b3a13f4f, >= a1b0b9415817c14d207921582f269d03f848b69f < 110b43ef05342d5a11284cc8b21582b698b4ef1c, >= 4.4, >= 4.4 < 6.1.129, >= 6.2 < 6.6.78, >= 6.7 < 6.12.14, >= 6.13 < 6.13.3)에 포함되는지 확인합니다. OS를 선택하면 해당 OS의 제품·패키지·KB·APAR 확인 명령만 표시됩니다.
조치방안
제3자 참조와 수정 버전 값(6.1.129, 6.6.78, 6.12.14, 6.13.3)은 보조 근거로만 사용하고, 공급사 공식 보안 권고에서 조치 기준을 재확인합니다.
조치 후 확인사항
패치 후 같은 명령으로 전체 버전을 다시 확인해 Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel 6.1.129, 6.6.78, 6.12.14, 6.13.3 기준을 충족하는지 확인합니다. 이어서 메모리 손상 관련 오류·공격 흔적이 새로 발생하지 않는지 확인합니다.