PT-2018-6748 · Linux+3 · Linux Kernel+3

Publicado

2017-07-12

·

Atualizado

2018-07-09

·

CVE-2017-18221

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 4.11.4
Description: The issue allows local users to cause a denial of service due to NR MLOCK accounting corruption. This can be achieved through crafted use of mlockall and munlockall system calls. The munlock pagevec function in mm/mlock.c is involved in this issue.
Recommendations: For Linux kernel versions prior to 4.11.4, update to version 4.11.4 or later to resolve the issue.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2017-1854
ALT-PU-2018-1991
CVE-2017-18221
SUSE-SU-2018:0834-1
SUSE-SU-2018:0848-1
USN-3655-1
USN-3655-2

Produtos afetados

Alt Linux
Linux Kernel
Suse
Ubuntu