vulnerability
SUSE: CVE-2018-14734: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
6 | (AV:L/AC:L/Au:N/C:P/I:P/A:C) | Jul 29, 2018 | Aug 15, 2018 | Feb 4, 2022 |
Severity
6
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:C)
Published
Jul 29, 2018
Added
Aug 15, 2018
Modified
Feb 4, 2022
Description
drivers/infiniband/core/ucma.c in the Linux kernel through 4.17.11 allows ucma_leave_multicast to access a certain data structure after a cleanup step in ucma_process_join, which allows attackers to cause a denial of service (use-after-free).
Solution(s)
suse-upgrade-cluster-md-kmp-defaultsuse-upgrade-cluster-network-kmp-defaultsuse-upgrade-dlm-kmp-defaultsuse-upgrade-dpdk-develsuse-upgrade-dpdk-thunderx-develsuse-upgrade-gfs2-kmp-defaultsuse-upgrade-kernel-defaultsuse-upgrade-kernel-docssuse-upgrade-kernel-docs-azuresuse-upgrade-kernel-ec2suse-upgrade-kernel-ec2-develsuse-upgrade-kernel-ec2-extrasuse-upgrade-kernel-livepatch-4_12_14-23-defaultsuse-upgrade-kernel-livepatch-4_12_14-25_3-defaultsuse-upgrade-kernel-obs-buildsuse-upgrade-ocfs2-kmp-default
References
- SUSE-SUSE-SU-2018:2328-1
- SUSE-SUSE-SU-2018:2344-1
- SUSE-SUSE-SU-2018:2344-2
- SUSE-SUSE-SU-2018:2362-1
- SUSE-SUSE-SU-2018:2374-1
- SUSE-SUSE-SU-2018:2384-1
- SUSE-SUSE-SU-2018:2596-1
- SUSE-SUSE-SU-2018:2879-1
- SUSE-SUSE-SU-2018:2907-1
- SUSE-SUSE-SU-2018:3088-1
- SUSE-SUSE-SU-2019:1422-1
- SUSE-SUSE-SU-2019:1437-1
- SUSE-SUSE-SU-2019:1489-1
- UBUNTU-USN-3797-1
- UBUNTU-USN-3797-2
- UBUNTU-USN-3847-1
- UBUNTU-USN-3847-2
- UBUNTU-USN-3847-3
- UBUNTU-USN-3849-1
- UBUNTU-USN-3849-2
- DEBIAN-DSA-4308
- NVD-CVE-2018-14734

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.