Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-20855

Опубликовано: 26 июл. 2019
Источник: debian
EPSS Низкий

Описание

An issue was discovered in the Linux kernel before 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.18.8-1package
linuxnot-affectedstretchpackage
linuxnot-affectedjessiepackage

Примечания

  • Fixed by: https://git.kernel.org/linus/0625b4ba1a5d4703c7fb01c497bd6c156908af00

EPSS

Процентиль: 29%
0.00102
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
почти 6 лет назад

An issue was discovered in the Linux kernel before 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace.

CVSS3: 3.3
redhat
почти 6 лет назад

An issue was discovered in the Linux kernel before 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace.

CVSS3: 3.3
nvd
почти 6 лет назад

An issue was discovered in the Linux kernel before 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace.

github
около 3 лет назад

An issue was discovered in the Linux kernel before 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace.

suse-cvrf
почти 6 лет назад

Security update for the Linux Kernel

EPSS

Процентиль: 29%
0.00102
Низкий