ISOMAN

CVE

CVE-2018-5344

In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to cause a denial of service (__lock_acquire use-after-free) or possibly have unspecified other impact.

Severity
HIGH
CVSS
7.8
Published
Modified

Linked Releases

References

  1. http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ae6650163c66a7eff1acd6eb8b0f752dcfa8eba5
  2. http://www.securityfocus.com/bid/102503
  3. https://access.redhat.com/errata/RHSA-2018:2948
  4. https://access.redhat.com/errata/RHSA-2018:3083
  5. https://access.redhat.com/errata/RHSA-2018:3096
  6. https://github.com/torvalds/linux/commit/ae6650163c66a7eff1acd6eb8b0f752dcfa8eba5
  7. https://usn.ubuntu.com/3583-1/
  8. https://usn.ubuntu.com/3583-2/
  9. https://usn.ubuntu.com/3617-1/
  10. https://usn.ubuntu.com/3617-2/
  11. https://usn.ubuntu.com/3617-3/
  12. https://usn.ubuntu.com/3619-1/
  13. https://usn.ubuntu.com/3619-2/
  14. https://usn.ubuntu.com/3632-1/
  15. http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ae6650163c66a7eff1acd6eb8b0f752dcfa8eba5
  16. http://www.securityfocus.com/bid/102503
  17. https://access.redhat.com/errata/RHSA-2018:2948
  18. https://access.redhat.com/errata/RHSA-2018:3083
  19. https://access.redhat.com/errata/RHSA-2018:3096
  20. https://github.com/torvalds/linux/commit/ae6650163c66a7eff1acd6eb8b0f752dcfa8eba5