CVE-2017-18079 — NULL Pointer Dereference in Kernel
Severity
7.8HIGHNVD
OSV8.8
EPSS
0.1%
top 80.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 29
Latest updateMay 14
Description
drivers/input/serio/i8042.c in the Linux kernel before 4.12.4 allows attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact because the port->exists value can change after it is validated.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9
Affected Packages4 packages
Also affects: Ubuntu Linux 12.04, 14.04
Patches
🔴Vulnerability Details
3📋Vendor Advisories
4💬Community
1Bugzilla▶
CVE-2017-18079 kernel: Null pointer dereference in drivers/input/serio/i8042.c leading to denial-of-service↗2018-01-29