vulnerability

SUSE: CVE-2018-14734: SUSE Linux Security Advisory

Severity
6
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:C)
Published
Jul 29, 2018
Added
Aug 15, 2018
Modified
Feb 4, 2022

Description

drivers/infiniband/core/ucma.c in the Linux kernel through 4.17.11 allows ucma_leave_multicast to access a certain data structure after a cleanup step in ucma_process_join, which allows attackers to cause a denial of service (use-after-free).

Solution(s)

suse-upgrade-cluster-md-kmp-defaultsuse-upgrade-cluster-network-kmp-defaultsuse-upgrade-dlm-kmp-defaultsuse-upgrade-dpdk-develsuse-upgrade-dpdk-thunderx-develsuse-upgrade-gfs2-kmp-defaultsuse-upgrade-kernel-defaultsuse-upgrade-kernel-docssuse-upgrade-kernel-docs-azuresuse-upgrade-kernel-ec2suse-upgrade-kernel-ec2-develsuse-upgrade-kernel-ec2-extrasuse-upgrade-kernel-livepatch-4_12_14-23-defaultsuse-upgrade-kernel-livepatch-4_12_14-25_3-defaultsuse-upgrade-kernel-obs-buildsuse-upgrade-ocfs2-kmp-default
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.