Логотип exploitDog
bind:CVE-2018-12233
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-12233

Количество 13

Количество 13

ubuntu логотип

CVE-2018-12233

больше 7 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2018-12233

больше 7 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2018-12233

больше 7 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2018-12233

больше 7 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4 ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-wwc3-55gv-x4c8

больше 3 лет назад

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:1772-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:1773-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2637-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2366-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2332-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:1816-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2092-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2119-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
redhat логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 4.4
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4 ...

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
github логотип
GHSA-wwc3-55gv-x4c8

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unprivileged user with the ability to create files and execute programs. A kmalloc call is incorrect, leading to slab-out-of-bounds in jfs_xattr.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2018:1772-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:1773-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2637-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2366-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2332-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:1816-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2092-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2119-1

Security update for the Linux Kernel

больше 7 лет назад

Уязвимостей на страницу