Lucene search

K
f5F5F5:K53214222
HistoryJan 22, 2019 - 12:00 a.m.

K53214222 : midi kernel driver vulnerability CVE-2018-10902

2019-01-2200:00:00
my.f5.com
24

7.5 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%

Security Advisory Description

It was found that the raw midi kernel driver does not protect against concurrent access which leads to a double realloc (double free) in snd_rawmidi_input_params() and snd_rawmidi_output_status() which are part of snd_rawmidi_ioctl() handler in rawmidi.c file. A malicious local attacker could possibly use this for privilege escalation. (CVE-2018-10902)

Impact

There is no impact; F5 products are not affected by this vulnerability.