cbcvebase.
CVE-2018-7566
published 2018-03-30

CVE-2018-7566: The Linux kernel 4.15 has a Buffer Overflow via an SNDRV_SEQ_IOCTL_SET_CLIENT_POOL ioctl write operation to /dev/snd/seq by a local user.

high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
The Linux kernel 4.15 has a Buffer Overflow via an SNDRV_SEQ_IOCTL_SET_CLIENT_POOL ioctl write operation to /dev/snd/seq by a local user.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianlinux< linux 4.15.11-1 (bookworm)linux 4.15.11-1 (bookworm)
linuxlinux_kernel
linuxlinux_kernel>= 0 < 4.15.11-14.15.11-1
linuxlinux_kernel>= 0 < 4.15.11-14.15.11-1
linuxlinux_kernel>= 0 < 4.15.11-14.15.11-1
linuxlinux_kernel>= 0 < 4.15.11-14.15.11-1
linuxlinux_kernel>= 0 < 3.13.0-161.2113.13.0-161.211
linuxlinux_kernel>= 0 < 4.4.0-121.1454.4.0-121.145
oraclecommunications_eagle_application_processor
oraclecommunications_eagle_application_processor
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_tus
redhatenterprise_linux_workstation

CVSS provenance

nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH