Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-17182

Опубликовано: 19 сент. 2018
Источник: debian
EPSS Низкий

Описание

An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, invalidation, and dereference operations.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.18.10-1package

Примечания

  • https://git.kernel.org/linus/7a9cdebdcc17e426fb5287e4a82db1dfe86339b2

  • https://googleprojectzero.blogspot.com/2018/09/a-cache-invalidation-bug-in-linux.html

EPSS

Процентиль: 82%
0.01841
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 7 лет назад

An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, invalidation, and dereference operations.

CVSS3: 7
redhat
почти 7 лет назад

An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, invalidation, and dereference operations.

CVSS3: 7.8
nvd
почти 7 лет назад

An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, invalidation, and dereference operations.

suse-cvrf
больше 6 лет назад

Security update for the Linux Kernel

suse-cvrf
около 6 лет назад

Security update for the Linux Kernel

EPSS

Процентиль: 82%
0.01841
Низкий