UBUNTU-CVE-2018-14616
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-14616
UBUNTU-CVE-2018-14616
Summary:
Details: An issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference in fscrypt_do_page_crypto() in fs/crypto/crypto.c when operating on a file in a corrupted f2fs image.
References: https://ubuntu.com/security/CVE-2018-14616, https://bugzilla.kernel.org/show_bug.cgi?id=200465, https://git.kernel.org/pub/scm/linux/kernel/git/jaegeuk/f2fs.git/commit/?h=dev&id=94929845722b7dc9482f660da4a328530fc10a8a, https://git.kernel.org/pub/scm/linux/kernel/git/jaegeuk/f2fs.git/commit/?h=dev&id=91291e9998d208370eb8156c760691b873bd7522, https://ubuntu.com/security/notices/USN-3932-1, https://ubuntu.com/security/notices/USN-3932-2, https://ubuntu.com/security/notices/USN-4094-1, https://ubuntu.com/security/notices/USN-4118-1, https://www.cve.org/CVERecord?id=CVE-2018-14616
Affected packages
Package
Name: linux-raspi2
Purl: pkg:deb/ubuntu/linux-raspi2?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
