CVE-2018-17972
CVE-2018-17972
An issue was discovered in the proc_pid_stack function in fs/proc/base.c in the Linux kernel through 4.18.11. It does not ensure that only root may inspect the kernel stack of an arbitrary task, allowing a local attacker to exploit racy stack unwinding and leak kernel task stack contents.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00043.htmlhttps://access.redhat.com/errata/RHSA-2019:0512https://access.redhat.com/errata/RHSA-2019:0514https://access.redhat.com/errata/RHSA-2019:0831https://access.redhat.com/errata/RHSA-2019:2473https://lists.debian.org/debian-lts-announce/2019/03/msg00017.htmlhttps://lists.debian.org/debian-lts-announce/2019/03/msg00034.htmlhttps://lists.debian.org/debian-lts-announce/2019/04/msg00004.htmlhttps://marc.info/?l=linux-fsdevel&m=153806242024956&w=2https://support.f5.com/csp/article/K27673650?utm_source=f5support&%3Butm_medium=RSShttps://usn.ubuntu.com/3821-1/https://usn.ubuntu.com/3821-2/