CVE-2018-10675
published 2018-05-02CVE-2018-10675: The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly…
PriorityP334high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.43%
35.5th percentile
The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted system calls.
Affected
35 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | linux | < linux 4.12.12-1 (bookworm) | linux 4.12.12-1 (bookworm) |
| linux | linux_kernel | < 3.2.95 | 3.2.95 |
| linux | linux_kernel | >= 0 < 4.12.12-1 | 4.12.12-1 |
| linux | linux_kernel | >= 0 < 4.12.12-1 | 4.12.12-1 |
| linux | linux_kernel | >= 0 < 4.12.12-1 | 4.12.12-1 |
| linux | linux_kernel | >= 0 < 4.12.12-1 | 4.12.12-1 |
| linux | linux_kernel | >= 0 < 3.13.0-157.207 | 3.13.0-157.207 |
| linux | linux_kernel | >= 3.17 < 3.18.67 | 3.18.67 |
| linux | linux_kernel | >= 3.19 < 4.1.45 | 4.1.45 |
| linux | linux_kernel | >= 3.3 < 3.16.50 | 3.16.50 |
| linux | linux_kernel | >= 4.10 < 4.12.9 | 4.12.9 |
| linux | linux_kernel | >= 4.2 < 4.4.84 | 4.4.84 |
| linux | linux_kernel | >= 4.5 < 4.9.45 | 4.9.45 |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-496w-f8vc-3275: The do_get_mempolicy function in mm/mempolicy
ghsa_unreviewed·2022-05-13
CVE-2018-10675 [HIGH] CWE-416 GHSA-496w-f8vc-3275: The do_get_mempolicy function in mm/mempolicy
The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted system calls.
OSV
linux vulnerabilities
osv·2018-08-24·CVSS 4.3
CVE-2016-10208 [MEDIUM] linux vulnerabilities
linux vulnerabilities
Ralf Spenneberg discovered that the ext4 implementation in the Linux kernel
did not properly validate meta block groups. An attacker with physical
access could use this to specially craft an ext4 image that causes a denial
of service (system crash). (CVE-2016-10208)
It was discovered that an information disclosure vulnerability existed in
the ACPI implementation of the Linux kernel. A local attacker could use
this to expose sensitive information (kernel memory addresses).
(CVE-2017-11472)
It was discovered that a buffer overflow existed in the ACPI table parsing
implementation in the Linux kernel. A local attacker could use this to
construct a malicious ACPI table that, when loaded, caused a denial of
service (system crash) or possibly execute arbitrary code.
(CVE-
OSV
CVE-2018-10675: The do_get_mempolicy function in mm/mempolicy
osv·2018-05-02·CVSS 7.8
CVE-2018-10675 [HIGH] CVE-2018-10675: The do_get_mempolicy function in mm/mempolicy
The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted system calls.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2018-08-24·CVSS 4.3
CVE-2016-10208 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Ralf Spenneberg discovered that the ext4 implementation in the Linux kernel
did not properly validate meta block groups. An attacker with physical
access could use this to specially craft an ext4 image that causes a denial
of service (system crash). (CVE-2016-10208)
It was discovered that an information disclosure vulnerability existed in
the ACPI implementation of the Linux kernel. A local attacker could use
this to expose sensitive information (kernel memory addresses).
(CVE-2017-11472)
It was discovered that a buffer overflow existed in the ACPI table parsing
implementation in the Linux kernel. A local attacker could use this to
construct a malicious ACPI table that, when loaded, cau
Debian
CVE-2018-10675: linux - The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12....
vendor_debian·2018·CVSS 7.8
CVE-2018-10675 [HIGH] CVE-2018-10675: linux - The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12....
The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted system calls.
Scope: local
bookworm: resolved (fixed in 4.12.12-1)
bullseye: resolved (fixed in 4.12.12-1)
forky: resolved (fixed in 4.12.12-1)
sid: resolved (fixed in 4.12.12-1)
trixie: resolved (fixed in 4.12.12-1)
Red Hat
kernel: mm: use-after-free in do_get_mempolicy function allows local DoS or other unspecified impact
vendor_redhat·2017-08-19·CVSS 7.8
CVE-2018-10675 [HIGH] CWE-416 kernel: mm: use-after-free in do_get_mempolicy function allows local DoS or other unspecified impact
kernel: mm: use-after-free in do_get_mempolicy function allows local DoS or other unspecified impact
The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted system calls.
The do_get_mempolicy() function in mm/mempolicy.c in the Linux kernel allows local users to hit a use-after-free bug via crafted system calls and thus cause a denial of service (DoS) or possibly have unspecified other impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out.
Package: kernel (Red Hat Enterprise Linux 5) - Will not fix
Package: kernel-alt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-14627 JBoss/WildFly: iiop does not honour strict transport confidentiality
bugzilla·2018-09-03·CVSS 5.3
CVE-2018-14627 [MEDIUM] CVE-2018-14627 JBoss/WildFly: iiop does not honour strict transport confidentiality
CVE-2018-14627 JBoss/WildFly: iiop does not honour strict transport confidentiality
The IIOP OpenJDK Subsystem in WildFly before version 14.0.0 does not honour configuration when SSL transport is required. Servers before this version that are configured with the following setting allow clients to create plaintext connections:
Upstream Bug:
https://issues.jboss.org/browse/WFLY-9107
Upstream Pull Request:
https://github.com/wildfly/wildfly/pull/10675
Discussion:
This issue has been addressed in the following products:
Red Hat JBoss Enterprise Application Platform
Via RHSA-2018:3527 https://access.redhat.com/errata/RHSA-2018:3527
---
This issue has been addressed in the following products:
Red Hat JBoss Enterprise Application Platform 7.1 for RHEL 6
Via RHSA-2018:3529 https://a
Bugzilla
CVE-2018-10675 kernel: mm: use-after-free in do_get_mempolicy function allows local DoS or other unspecified impact
bugzilla·2018-05-04·CVSS 7.8
CVE-2018-10675 [HIGH] CVE-2018-10675 kernel: mm: use-after-free in do_get_mempolicy function allows local DoS or other unspecified impact
CVE-2018-10675 kernel: mm: use-after-free in do_get_mempolicy function allows local DoS or other unspecified impact
The do_get_mempolicy() function in mm/mempolicy.c in the Linux kernel allows local users to hit a use-after-free bug via crafted system calls and thus to cause a denial of service (DoS) or possibly have unspecified other impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although we believe it is unlikely.
References:
https://marc.info/?t=150295169600001&r=1&w=2
Upstream fix:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=73223e4e2e3867ebf033a5a8eb2e5df0158ccc99
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2018:2164 https://access.redhat.com/
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=73223e4e2e3867ebf033a5a8eb2e5df0158ccc99http://www.securityfocus.com/bid/104093https://access.redhat.com/errata/RHSA-2018:2164https://access.redhat.com/errata/RHSA-2018:2384https://access.redhat.com/errata/RHSA-2018:2395https://access.redhat.com/errata/RHSA-2018:2785https://access.redhat.com/errata/RHSA-2018:2791https://access.redhat.com/errata/RHSA-2018:2924https://access.redhat.com/errata/RHSA-2018:2925https://access.redhat.com/errata/RHSA-2018:2933https://access.redhat.com/errata/RHSA-2018:3540https://access.redhat.com/errata/RHSA-2018:3586https://access.redhat.com/errata/RHSA-2018:3590https://github.com/torvalds/linux/commit/73223e4e2e3867ebf033a5a8eb2e5df0158ccc99https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0https://usn.ubuntu.com/3754-1/https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.12.9https://www.oracle.com/security-alerts/cpujul2020.htmlhttp://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=73223e4e2e3867ebf033a5a8eb2e5df0158ccc99http://www.securityfocus.com/bid/104093https://access.redhat.com/errata/RHSA-2018:2164https://access.redhat.com/errata/RHSA-2018:2384https://access.redhat.com/errata/RHSA-2018:2395https://access.redhat.com/errata/RHSA-2018:2785https://access.redhat.com/errata/RHSA-2018:2791https://access.redhat.com/errata/RHSA-2018:2924https://access.redhat.com/errata/RHSA-2018:2925https://access.redhat.com/errata/RHSA-2018:2933https://access.redhat.com/errata/RHSA-2018:3540https://access.redhat.com/errata/RHSA-2018:3586https://access.redhat.com/errata/RHSA-2018:3590https://github.com/torvalds/linux/commit/73223e4e2e3867ebf033a5a8eb2e5df0158ccc99https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0https://usn.ubuntu.com/3754-1/https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.12.9https://www.oracle.com/security-alerts/cpujul2020.html
2018-05-02
Published