vulnerability
Ubuntu: (Multiple Advisories) (CVE-2017-18221): Linux kernel vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:L/AC:L/Au:N/C:N/I:N/A:C) | Mar 7, 2018 | May 31, 2018 | Jan 23, 2025 |
Severity
5
CVSS
(AV:L/AC:L/Au:N/C:N/I:N/A:C)
Published
Mar 7, 2018
Added
May 31, 2018
Modified
Jan 23, 2025
Description
The __munlock_pagevec function in mm/mlock.c in the Linux kernel before 4.11.4 allows local users to cause a denial of service (NR_MLOCK accounting corruption) via crafted use of mlockall and munlockall system calls.
Solution(s)
ubuntu-upgrade-linux-image-3-13-0-149-genericubuntu-upgrade-linux-image-3-13-0-149-generic-lpaeubuntu-upgrade-linux-image-3-13-0-149-lowlatencyubuntu-upgrade-linux-image-3-13-0-149-powerpc-e500ubuntu-upgrade-linux-image-3-13-0-149-powerpc-e500mcubuntu-upgrade-linux-image-3-13-0-149-powerpc-smpubuntu-upgrade-linux-image-3-13-0-149-powerpc64-embubuntu-upgrade-linux-image-3-13-0-149-powerpc64-smpubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-lts-trustyubuntu-upgrade-linux-image-generic-lts-trustyubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-powerpc-e500ubuntu-upgrade-linux-image-powerpc-e500mcubuntu-upgrade-linux-image-powerpc-smpubuntu-upgrade-linux-image-powerpc64-embubuntu-upgrade-linux-image-powerpc64-smp
References
- CVE-2017-18221
- https://attackerkb.com/topics/CVE-2017-18221
- NVD-CVE-2017-18221
- UBUNTU-USN-3444-1
- UBUNTU-USN-3444-2
- UBUNTU-USN-3617-1
- UBUNTU-USN-3617-2
- UBUNTU-USN-3617-3
- UBUNTU-USN-3619-1
- UBUNTU-USN-3619-2
- UBUNTU-USN-3631-1
- UBUNTU-USN-3631-2
- UBUNTU-USN-3651-1
- UBUNTU-USN-3652-1
- UBUNTU-USN-3653-1
- UBUNTU-USN-3653-2
- UBUNTU-USN-3654-1
- UBUNTU-USN-3654-2
- UBUNTU-USN-3655-1
- UBUNTU-USN-3655-2
- UBUNTU-USN-3656-1
- UBUNTU-USN-3657-1
- UBUNTU-USN-3679-1
- UBUNTU-USN-3680-1
- UBUNTU-USN-3756-1
- UBUNTU-USN-3777-3

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.