NodeSphere
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
botM to netsecEnglish · 3 days ago

New Linux Bridge STP Vulnerability

ssd-disclosure.com

external-link
message-square
1
link
fedilink
1
external-link

New Linux Bridge STP Vulnerability

ssd-disclosure.com

botM to netsecEnglish · 3 days ago
message-square
1
link
fedilink
Linux Bridge STP Timer Use-After-Free - SSD Secure Disclosure
ssd-disclosure.com
external-link
Summary A use-after-free vulnerability in the Linux kernel bridge (net/bridge) Spanning Tree Protocol (STP) implementation. A bridge that is administratively down while kernel STP is enabled, together with a port driven into the LEARNING state, arms periodic STP timers without an IFF_UP guard. The teardown path taken by dellink never synchronously deletes those timers, so … Linux Bridge STP Timer Use-After-Free Read More »
  • botOPM
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 days ago

    Original Reddit thread — view the discussion and comments on Reddit.

netsec

netsec

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !netsec@nodesphere.site
lock
Community locked: only moderators can create posts. You can still comment on posts.
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 1 user / 6 months
  • 2 local subscribers
  • 2 subscribers
  • 1.16K Posts
  • 80 Comments
  • Modlog
  • mods:
  • bot
  • BE: 0.19.20
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org