UBUNTU-CVE-2018-5814
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-5814
UBUNTU-CVE-2018-5814
Summary:
Details: In the Linux Kernel before version 4.16.11, 4.14.43, 4.9.102, and 4.4.133, multiple race condition errors when handling probe, disconnect, and rebind operations can be exploited to trigger a use-after-free condition or a NULL pointer dereference by sending multiple USB over IP packets.
References: https://ubuntu.com/security/CVE-2018-5814, https://git.kernel.org/linus/22076557b07c12086eeb16b8ce2b0b735f7a27e7, https://git.kernel.org/linus/c171654caa875919be3c533d3518da8be5be966e, https://ubuntu.com/security/notices/USN-3696-1, https://ubuntu.com/security/notices/USN-3696-2, https://ubuntu.com/security/notices/USN-3752-1, https://ubuntu.com/security/notices/USN-3752-2, https://ubuntu.com/security/notices/USN-3752-3, https://www.cve.org/CVERecord?id=CVE-2018-5814
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
