PT-2017-1184 · Linux+2 · Linux Kernel+2
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions 4.8.x through 4.9.x before 4.9.5
Linux kernel version 4.9.x before 4.9.5
Description
The freelist-randomization feature in the Linux kernel allows local users to cause a denial of service, resulting in duplicate freelist entries and system crash, or possibly have unspecified other impact in opportunistic circumstances by leveraging the selection of a large value for a random number. This issue is related to errors in number processing.
Recommendations
For Linux kernel versions 4.8.x through 4.9.x before 4.9.5, update to version 4.9.5 or later to resolve the issue.
For Linux kernel version 4.9.x before 4.9.5, update to version 4.9.5 or later to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Linux Kernel
Ubuntu