UBUNTU-CVE-2018-17182
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-17182
UBUNTU-CVE-2018-17182
Summary:
Details: An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, invalidation, and dereference operations.
References: https://ubuntu.com/security/CVE-2018-17182, https://googleprojectzero.blogspot.com/2018/09/a-cache-invalidation-bug-in-linux.html, https://ubuntu.com/security/notices/USN-3776-1, https://ubuntu.com/security/notices/USN-3776-2, https://ubuntu.com/security/notices/USN-3777-1, https://ubuntu.com/security/notices/USN-3777-2, https://ubuntu.com/security/notices/USN-3777-3, https://www.cve.org/CVERecord?id=CVE-2018-17182
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
