Количество 19
Количество 19

CVE-2017-17806
The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization.

CVE-2017-17806
The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization.

CVE-2017-17806
The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization.
CVE-2017-17806
The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.1 ...
GHSA-7cfh-r37c-4mqr
The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization.

openSUSE-SU-2018:0023-1
Security update for the Linux Kernel

openSUSE-SU-2018:0022-1
Security update for the Linux Kernel

SUSE-SU-2018:0012-1
Security update for the Linux Kernel

SUSE-SU-2018:0010-1
Security update for the Linux Kernel
ELSA-2018-4299
ELSA-2018-4299: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2018:0525-1
Security update for the Linux Kernel

SUSE-SU-2018:0437-1
Security update for the Linux Kernel
ELSA-2018-4301
ELSA-2018-4301: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2018-4300
ELSA-2018-4300: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2018:0011-1
Security update for the Linux Kernel

SUSE-SU-2018:0213-1
Security update for the Linux Kernel
ELSA-2019-4316
ELSA-2019-4316: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2018:0180-1
Security update for the Linux Kernel

SUSE-SU-2018:0040-1
Security update for the Linux Kernel
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2017-17806 The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization. | CVSS3: 7.8 | 0% Низкий | больше 7 лет назад |
![]() | CVE-2017-17806 The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization. | CVSS3: 5.5 | 0% Низкий | больше 7 лет назад |
![]() | CVE-2017-17806 The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization. | CVSS3: 7.8 | 0% Низкий | больше 7 лет назад |
CVE-2017-17806 The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.1 ... | CVSS3: 7.8 | 0% Низкий | больше 7 лет назад | |
GHSA-7cfh-r37c-4mqr The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic hash algorithm is unkeyed, allowing a local attacker able to use the AF_ALG-based hash interface (CONFIG_CRYPTO_USER_API_HASH) and the SHA-3 hash algorithm (CONFIG_CRYPTO_SHA3) to cause a kernel stack buffer overflow by executing a crafted sequence of system calls that encounter a missing SHA-3 initialization. | CVSS3: 7.8 | 0% Низкий | около 3 лет назад | |
![]() | openSUSE-SU-2018:0023-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | openSUSE-SU-2018:0022-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0012-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0010-1 Security update for the Linux Kernel | больше 7 лет назад | ||
ELSA-2018-4299 ELSA-2018-4299: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 6 лет назад | |||
![]() | SUSE-SU-2018:0525-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0437-1 Security update for the Linux Kernel | больше 7 лет назад | ||
ELSA-2018-4301 ELSA-2018-4301: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 6 лет назад | |||
ELSA-2018-4300 ELSA-2018-4300: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 6 лет назад | |||
![]() | SUSE-SU-2018:0011-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0213-1 Security update for the Linux Kernel | больше 7 лет назад | ||
ELSA-2019-4316 ELSA-2019-4316: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 6 лет назад | |||
![]() | SUSE-SU-2018:0180-1 Security update for the Linux Kernel | больше 7 лет назад | ||
![]() | SUSE-SU-2018:0040-1 Security update for the Linux Kernel | больше 7 лет назад |
Уязвимостей на страницу