PT-2019-10283 · Linux+2 · Linux Kernel+2
Publicado
2018-09-17
·
Atualizado
2019-11-20
·
CVE-2018-20855
CVSS v3.1
3.3
Baixa
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Linux kernel versions prior to 4.18.7
Description:
An issue was discovered in the Linux kernel where
mlx5 ib create qp resp was never initialized in create qp common in drivers/infiniband/hw/mlx5/qp.c, resulting in a leak of stack memory to userspace.Recommendations:
For Linux kernel versions prior to 4.18.7, update to version 4.18.7 or later to resolve the issue.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Linux Kernel
Suse