[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2018-1133 --- kernel perf

ID: oval:org.secpod.oval:def:1600968Date: (C)2018-12-21   (M)2024-04-17
Class: PATCHFamily: unix




A security flaw was found in the Linux kernel in a way that the cleancache subsystem clears an inode after the final file truncation . The new file created with the same inode may contain leftover pages from cleancache and the old file data instead of the new one.An issue was discovered in the Linux kernel through 4.19. An information leak in cdrom_ioctl_select_disc in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds checking.A NULL pointer dereference security flaw was found in the Linux kernel in the vcpu_scan_ioapic function in arch/x86/kvm/x86.c. This allows local users with certain privileges to cause a denial of service via a crafted system call to the KVM subsystem.

Platform:
Amazon Linux AMI
Product:
kernel
perf
Reference:
ALAS-2018-1133
CVE-2018-19407
CVE-2018-18710
CVE-2018-16862
CVE    3
CVE-2018-19407
CVE-2018-16862
CVE-2018-18710
CPE    3
cpe:/o:amazon:linux
cpe:/o:linux:linux_kernel
cpe:/a:perf:perf

© SecPod Technologies