Логотип exploitDog
bind:CVE-2018-15471
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-15471

Количество 10

Количество 10

ubuntu логотип

CVE-2018-15471

больше 7 лет назад

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2018-15471

больше 7 лет назад

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2018-15471

больше 7 лет назад

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2018-15471

больше 7 лет назад

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen- ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2677-1

больше 7 лет назад

Security update for the Linux Kernel (Live Patch 0 for SLE 15)

EPSS: Низкий
github логотип

GHSA-qv83-77rj-635j

больше 3 лет назад

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2020-00735

больше 7 лет назад

Уязвимость функции xenvif_set_hash_mapping гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к информации и нарушить ее целостность и доступность

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2933-1

больше 7 лет назад

Security update for the Linux Kernel (Live Patch 3 for SLE 15)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2678-1

больше 7 лет назад

Security update for the Linux Kernel (Live Patch 2 for SLE 15)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2935-1

больше 7 лет назад

Security update for the Linux Kernel (Live Patch 3 for SLE 15)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-15471

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
redhat логотип
CVE-2018-15471

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 8.2
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-15471

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-15471

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen- ...

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2677-1

Security update for the Linux Kernel (Live Patch 0 for SLE 15)

0%
Низкий
больше 7 лет назад
github логотип
GHSA-qv83-77rj-635j

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.x and other products. The Linux netback driver allows frontends to control mapping of requests to request queues. When processing a request to set or change this mapping, some input validation (e.g., for an integer overflow) was missing or flawed, leading to OOB access in hash handling. A malicious or buggy frontend may cause the (usually privileged) backend to make out of bounds memory accesses, potentially resulting in one or more of privilege escalation, Denial of Service (DoS), or information leaks.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-00735

Уязвимость функции xenvif_set_hash_mapping гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к информации и нарушить ее целостность и доступность

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2933-1

Security update for the Linux Kernel (Live Patch 3 for SLE 15)

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2678-1

Security update for the Linux Kernel (Live Patch 2 for SLE 15)

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2935-1

Security update for the Linux Kernel (Live Patch 3 for SLE 15)

больше 7 лет назад

Уязвимостей на страницу