[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4313-1 linux -- linux

ID: oval:org.secpod.oval:def:53435Date: (C)2019-05-30   (M)2024-04-17
Class: PATCHFamily: unix




Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. CVE-2018-15471 Felix Wilhelm of Google Project Zero discovered a flaw in the hash handling of the xen-netback Linux kernel module. A malicious or buggy frontend may cause the backend to make out of bounds memory accesses, potentially resulting in privilege escalation, denial of service, or information leaks. https://xenbits.xen.org/xsa/advisory-270.html CVE-2018-18021 It was discovered that the KVM subsystem on the arm64 platform does not properly handle the KVM_SET_ON_REG ioctl. An attacker who can create KVM based virtual machines can take advantage of this flaw for denial of service or privilege escalation .

Platform:
Linux Mint 3
Product:
linux-image-4.9
Reference:
DSA-4313-1
CVE-2018-15471
CVE-2018-18021
CVE    2
CVE-2018-15471
CVE-2018-18021
CPE    2
cpe:/a:linux:linux_image:4.9
cpe:/o:linux_mint:linux_mint:3

© SecPod Technologies