Linux Kernel 'drivers/scsi/libsas/sas_expander.c' DoS Vulnerability (CVE-2018-7757)
Linux Kernel 'drivers/scsi/libsas/sas_expander.c' DoS Vulnerability (CVE-2018-7757)
Release date:
Updated on:
Affected Systems:
Linux kernel <= 4.15.7
Description:
Bugtraq id: 103348
CVE (CAN) ID: CVE-2018-7757
Linux Kernel is the Kernel of the Linux operating system.
In Linux kernel 4.15.7 and earlier versions, the drivers/scsi/libsas/sas_expander.c/sas_smp_get_phy_events function has a memory leakage vulnerability, which allows local users to exploit this vulnerability to cause DoS (memory depletion ).
<* Source: Jason Yan
*>
Suggestion:
Vendor patch:
Linux
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://github.com/torvalds/linux/commit/4a491b1ab11ca0556d2fda1ff1301e862a2d44c4
Http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit? Id = 4a491b1ab11ca0556d2fda1ff1301e862a2d44c4
This article permanently updates link: https://www.bkjia.com/Linux/2018-03/151413.htm