CVE-2018-9422
published 2018-11-06CVE-2018-9422: In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges…
PriorityP339high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.22%
12.0th percentile
In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-74250718 References: Upstream kernel.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | linux | < linux 4.6.1-1 (bookworm) | linux 4.6.1-1 (bookworm) |
| android | — | — | |
| google_inc | android | — | — |
| linux | linux_kernel | >= 0 < 4.6.1-1 | 4.6.1-1 |
| linux | linux_kernel | >= 0 < 4.6.1-1 | 4.6.1-1 |
| linux | linux_kernel | >= 0 < 4.6.1-1 | 4.6.1-1 |
| linux | linux_kernel | >= 0 < 4.6.1-1 | 4.6.1-1 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2018-9422: futex
vendor_android·2018-07-01·CVSS 7.8
CVE-2018-9422 [HIGH] CVE-2018-9422: futex
Android Security Bulletin 2018-07-01
CVE: CVE-2018-9422
Severity: HIGH
Type: EoP
Component: futex
References: A-74250718
Upstream kernel
Debian
CVE-2018-9422: linux - In get_futex_key of futex.c, there is a use-after-free due to improper locking. ...
vendor_debian·2018·CVSS 7.8
CVE-2018-9422 [HIGH] CVE-2018-9422: linux - In get_futex_key of futex.c, there is a use-after-free due to improper locking. ...
In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-74250718 References: Upstream kernel.
Scope: local
bookworm: resolved (fixed in 4.6.1-1)
bullseye: resolved (fixed in 4.6.1-1)
forky: resolved (fixed in 4.6.1-1)
sid: resolved (fixed in 4.6.1-1)
trixie: resolved (fixed in 4.6.1-1)
Red Hat
kernel: Elevation of Privilege in futex
vendor_redhat·2016-02-09·CVSS 7.8
CVE-2018-9422 [HIGH] CWE-362 kernel: Elevation of Privilege in futex
kernel: Elevation of Privilege in futex
In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-74250718 References: Upstream kernel.
Non-optimized code for key handling of shared futexes was found in the Linux kernel in the form of unbounded contention time due to the page lock for real-time users. Before the fix, the page lock was an unnecessarily heavy lock for the futex path that protected too much. After the fix, the page lock is only required in a specific corner case.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linu
GHSA
GHSA-7jfq-4vfx-p3rg: In get_futex_key of futex
ghsa_unreviewed·2022-05-14
CVE-2018-9422 [HIGH] CWE-416 GHSA-7jfq-4vfx-p3rg: In get_futex_key of futex
In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-74250718 References: Upstream kernel.
OSV
CVE-2018-9422: In get_futex_key of futex
osv·2018-11-06·CVSS 7.8
CVE-2018-9422 [HIGH] CVE-2018-9422: In get_futex_key of futex
In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-74250718 References: Upstream kernel.
No detection rules found.
No public exploits indexed.
https://bugzilla.suse.com/show_bug.cgi?id=1102001&_ga=2.244341506.661832603.1561012452-1774095668.1553066022https://lists.debian.org/debian-lts-announce/2018/07/msg00015.htmlhttps://lists.debian.org/debian-lts-announce/2018/07/msg00016.htmlhttps://source.android.com/security/bulletin/2018-07-01https://bugzilla.suse.com/show_bug.cgi?id=1102001&_ga=2.244341506.661832603.1561012452-1774095668.1553066022https://lists.debian.org/debian-lts-announce/2018/07/msg00015.htmlhttps://lists.debian.org/debian-lts-announce/2018/07/msg00016.htmlhttps://source.android.com/security/bulletin/2018-07-01
2018-11-06
Published