Security context

What an agent needs to avoid regressing past fixes and find the next vuln in this repo.

vishvananda/netlink
main @ bab08b3
1
Fixes
0
CVEs
HIGH
Peak severity
Highlights
Memory Corruption: 1 prior fix. Scrutinize any change in this area.
link_linux.go: most-fixed (1 issue). Treat as high-risk during review.
1 high-severity fix in this history; regressions here are high-impact.
Recurring patterns

The bug types that recur here, drawn from past fixes, not open vulnerabilities.

Memory Corruption: A memory corruption vulnerability occurred in VethPeerIndex due to a buffer overflow when the kernel returned more ethtool stats than the hardcoded struct size allocated. Attackers or malicious environments could exploit this mismatch to corrupt the stack during netlink queries. Ensure dynamic sizing based on actual kernel reported size rather than hardcoded assumptions.