vulnerability
Ubuntu: (CVE-2017-18550): linux-hwe vulnerability
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
2 | (AV:L/AC:L/Au:N/C:P/I:N/A:N) | Aug 19, 2019 | Nov 19, 2024 | Nov 19, 2024 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Aug 19, 2019
Added
Nov 19, 2024
Modified
Nov 19, 2024
Description
An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure of kernel stack memory because aac_get_hba_info does not initialize the hbainfo structure.
Solution(s)
ubuntu-upgrade-linux-azureubuntu-upgrade-linux-gcpubuntu-upgrade-linux-hweubuntu-upgrade-linux-hwe-edge
References
- CVE-2017-18550
- https://attackerkb.com/topics/CVE-2017-18550
- URL-https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1700077
- URL-https://git.kernel.org/linus/342ffc26693b528648bdc9377e51e4f2450b4860
- URL-https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=342ffc26693b528648bdc9377e51e4f2450b4860
- URL-https://www.cve.org/CVERecord?id=CVE-2017-18550

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.