Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-12232

Опубликовано: 12 июн. 2018
Источник: nvd
CVSS3: 5.9
CVSS2: 7.1
EPSS Низкий

Описание

In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket file descriptor, related to the sock_close and sockfs_setattr functions. fchownat does not increment the file descriptor reference count, which allows close to set the socket to NULL during fchownat's execution, leading to a NULL pointer dereference and system crash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.17.1 (включая)

EPSS

Процентиль: 87%
0.03298
Низкий

5.9 Medium

CVSS3

7.1 High

CVSS2

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 7 лет назад

In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket file descriptor, related to the sock_close and sockfs_setattr functions. fchownat does not increment the file descriptor reference count, which allows close to set the socket to NULL during fchownat's execution, leading to a NULL pointer dereference and system crash.

CVSS3: 5.5
redhat
больше 7 лет назад

In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket file descriptor, related to the sock_close and sockfs_setattr functions. fchownat does not increment the file descriptor reference count, which allows close to set the socket to NULL during fchownat's execution, leading to a NULL pointer dereference and system crash.

CVSS3: 5.9
debian
больше 7 лет назад

In net/socket.c in the Linux kernel through 4.17.1, there is a race co ...

CVSS3: 5.9
github
больше 3 лет назад

In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket file descriptor, related to the sock_close and sockfs_setattr functions. fchownat does not increment the file descriptor reference count, which allows close to set the socket to NULL during fchownat's execution, leading to a NULL pointer dereference and system crash.

suse-cvrf
почти 7 лет назад

Security update for the Linux Kernel (Live Patch 1 for SLE 15)

EPSS

Процентиль: 87%
0.03298
Низкий

5.9 Medium

CVSS3

7.1 High

CVSS2

Дефекты

CWE-362