Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Miloš Prchlík

Researcher fromRed Hat
#49822of 53,633
4.9Total CVSS
Vulnerabilities · 1
PT-2014-8309
4.9
2014-11-24
Linux · Linux Kernel · CVE-2014-7843
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 3.17.4 **Description** The issue allows local users to cause a denial of service, resulting in a system crash, by reading one byte beyond a /dev/zero page boundary. This is due to a problem in the ` clear user` function. **Recommendations** For Linux kernel versions prior to 3.17.4, update to version 3.17.4 or later to resolve the issue. As a temporary workaround, consider restricting access to the `/dev/zero` page to minimize the risk of exploitation.