Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

github логотип

GHSA-wwc3-55gv-x4c8

больше 4 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2018-12233

около 8 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2018-12233

около 8 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2018-12233

около 8 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2018-12233

около 8 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4 ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:1772-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:1773-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2637-1

почти 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2366-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2332-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:1816-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2092-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2119-1

около 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-wwc3-55gv-x4c8

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
2%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
2%
Низкий
около 8 лет назад
redhat логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 4.4
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4 ...

CVSS3: 7.8
2%
Низкий
около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:1772-1

Security update for the Linux Kernel

около 8 лет назад
suse-cvrf логотип
openSUSE-SU-2018:1773-1

Security update for the Linux Kernel

около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2637-1

Security update for the Linux Kernel

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2366-1

Security update for the Linux Kernel

около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2332-1

Security update for the Linux Kernel

около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:1816-1

Security update for the Linux Kernel

около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2092-1

Security update for the Linux Kernel

около 8 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2119-1

Security update for the Linux Kernel

около 8 лет назад

Уязвимостей на страницу