Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-7757

Опубликовано: 08 мар. 2018
Источник: nvd
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy directory, as demonstrated by the /sys/class/sas_phy/phy-1:0:12/invalid_dword_count file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.15.7 (включая)

EPSS

Процентиль: 27%
0.0009
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-772

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy directory, as demonstrated by the /sys/class/sas_phy/phy-1:0:12/invalid_dword_count file.

CVSS3: 5.5
redhat
больше 7 лет назад

Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy directory, as demonstrated by the /sys/class/sas_phy/phy-1:0:12/invalid_dword_count file.

CVSS3: 5.5
debian
больше 7 лет назад

Memory leak in the sas_smp_get_phy_events function in drivers/scsi/lib ...

CVSS3: 5.5
github
около 3 лет назад

Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy directory, as demonstrated by the /sys/class/sas_phy/phy-1:0:12/invalid_dword_count file.

oracle-oval
больше 6 лет назад

ELSA-2018-4269: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 27%
0.0009
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-772