Wind River Support Network

HomeDefectsLIN10-4375
Fixed

LIN10-4375 : Security Advisory - linux - CVE-2018-14678

Created: Jul 31, 2018    Updated: Dec 3, 2018
Resolved Date: Aug 24, 2018
Found In Version: 10.17.41.1
Fix Version: 10.17.41.11
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback entry point in arch/x86/entry/entry_64.S does not properly maintain RBX, which allows local users to cause a denial of service (uninitialized memory usage and system crash). Within Xen, 64-bit x86 PV Linux guest OS users can trigger a guest OS crash or possibly gain privileges.

https://nvd.nist.gov/vuln/detail/CVE-2018-14678

Other Downloads


CVEs


Live chat
Online