[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4266-1 linux -- linux

ID: oval:org.secpod.oval:def:53390Date: (C)2019-05-30   (M)2024-04-17
Class: PATCHFamily: unix




Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation or denial of service. CVE-2018-5390 Juha-Matti Tilli discovered that a remote attacker can trigger the worst case code paths for TCP stream reassembly with low rates of specially crafted packets leading to remote denial of service. CVE-2018-13405 Jann Horn discovered that the inode_init_owner function in fs/inode.c in the Linux kernel allows local users to create files with an unintended group ownership allowing attackers to escalate privileges by making a plain file executable and SGID.

Platform:
Linux Mint 3
Product:
linux-image-4.9
Reference:
DSA-4266-1
CVE-2018-5390
CVE-2018-13405
CVE    2
CVE-2018-13405
CVE-2018-5390
CPE    2
cpe:/a:linux:linux_image:4.9
cpe:/o:linux_mint:linux_mint:3

© SecPod Technologies