An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, invalidation, and dereference operations.
http://www.securityfocus.com/bid/105417
http://www.securityfocus.com/bid/106503
http://www.securitytracker.com/id/1041748
https://access.redhat.com/errata/RHSA-2018:3656
https://github.com/torvalds/linux/commit/7a9cdebdcc17e426fb5287e4a82db1dfe86339b2
https://lists.debian.org/debian-lts-announce/2018/10/msg00003.html
https://security.netapp.com/advisory/ntap-20190204-0001/
https://usn.ubuntu.com/3776-1/
https://usn.ubuntu.com/3776-2/
https://usn.ubuntu.com/3777-1/
https://usn.ubuntu.com/3777-2/
https://usn.ubuntu.com/3777-3/
https://www.debian.org/security/2018/dsa-4308
Source: MITRE
Published: 2018-09-19
Updated: 2019-03-05
Type: CWE-416
Base Score: 7.2
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C
Impact Score: 10
Exploitability Score: 3.9
Severity: HIGH
Base Score: 7.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Impact Score: 5.9
Exploitability Score: 1.8
Severity: HIGH
OR
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions up to 4.18.8 (inclusive)
OR
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
OR
OR
cpe:2.3:a:netapp:active_iq_performance_analytics_services:-:*:*:*:*:*:*:*
ID | Name | Product | Family | Severity |
---|---|---|---|---|
132254 | RancherOS < 1.4.2 Local Privilege Escalation | Nessus | Misc. | high |
124979 | EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1526) | Nessus | Huawei Local Security Checks | high |
123329 | openSUSE Security Update : the Linux Kernel (openSUSE-2019-769) | Nessus | SuSE Local Security Checks | high |
121208 | SUSE SLES12 Security Update : kernel (SUSE-SU-2019:0095-1) | Nessus | SuSE Local Security Checks | high |
120871 | Fedora 28 : kernel / kernel-headers (2018-e820fccd83) | Nessus | Fedora Local Security Checks | high |
120303 | Fedora 29 : kernel / kernel-headers (2018-272cf2f9f4) | Nessus | Fedora Local Security Checks | high |
120130 | SUSE SLED15 / SLES15 Security Update : kernel (SUSE-SU-2018:3159-1) | Nessus | SuSE Local Security Checks | high |
119170 | RHEL 7 : kernel-alt (RHSA-2018:3656) | Nessus | Red Hat Local Security Checks | high |
118861 | Oracle Linux 7 : Unbreakable Enterprise kernel (ELSA-2018-4270) | Nessus | Oracle Linux Local Security Checks | high |
118322 | Ubuntu 16.04 LTS / 18.04 LTS : Linux kernel (Azure) vulnerabilities (USN-3777-3) (Spectre) | Nessus | Ubuntu Local Security Checks | high |
118223 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3238-1) | Nessus | SuSE Local Security Checks | high |
118194 | openSUSE Security Update : the Linux Kernel (openSUSE-2018-1184) | Nessus | SuSE Local Security Checks | high |
118175 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3173-1) | Nessus | SuSE Local Security Checks | high |
118174 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3172-1) | Nessus | SuSE Local Security Checks | high |
118173 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3171-1) | Nessus | SuSE Local Security Checks | high |
118079 | SUSE SLES11 Security Update : kernel (SUSE-SU-2018:3100-1) | Nessus | SuSE Local Security Checks | high |
118054 | Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4244) | Nessus | Oracle Linux Local Security Checks | high |
118052 | OracleVM 3.4 : Unbreakable / etc (OVMSA-2018-0266) | Nessus | OracleVM Local Security Checks | high |
118041 | Amazon Linux 2 : kernel (ALAS-2018-1086) | Nessus | Amazon Linux Local Security Checks | high |
118034 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3084-1) | Nessus | SuSE Local Security Checks | high |
118033 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3083-1) | Nessus | SuSE Local Security Checks | high |
117990 | SUSE SLES12 Security Update : kernel (SUSE-SU-2018:3032-1) | Nessus | SuSE Local Security Checks | high |
117988 | openSUSE Security Update : the Linux Kernel (openSUSE-2018-1140) | Nessus | SuSE Local Security Checks | high |
117933 | SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2018:3003-1) | Nessus | SuSE Local Security Checks | high |
117923 | Amazon Linux AMI : kernel (ALAS-2018-1086) | Nessus | Amazon Linux Local Security Checks | high |
117908 | Debian DLA-1531-1 : linux-4.9 security update | Nessus | Debian Local Security Checks | high |
117873 | Ubuntu 16.04 LTS : linux-hwe, linux-gcp vulnerabilities (USN-3777-2) | Nessus | Ubuntu Local Security Checks | high |
117872 | Ubuntu 18.04 LTS : linux, linux-aws, linux-gcp, linux-kvm, linux-oem, linux-raspi2 vulnerabilities (USN-3777-1) | Nessus | Ubuntu Local Security Checks | high |
117871 | Ubuntu 14.04 LTS : linux-lts-xenial, linux-aws vulnerabilities (USN-3776-2) | Nessus | Ubuntu Local Security Checks | high |
117870 | Ubuntu 16.04 LTS : linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities (USN-3776-1) | Nessus | Ubuntu Local Security Checks | high |
117862 | Debian DSA-4308-1 : linux - security update | Nessus | Debian Local Security Checks | high |
117720 | Fedora 27 : kernel / kernel-headers (2018-d77cc41f35) | Nessus | Fedora Local Security Checks | high |
117653 | Slackware 14.2 : Slackware 14.2 kernel (SSA:2018-264-01) | Nessus | Slackware Local Security Checks | high |