Lucene search

K
redhatcveRedhat.comRH:CVE-2017-18203
HistoryApr 08, 2020 - 4:58 a.m.

CVE-2017-18203

2020-04-0804:58:16
redhat.com
access.redhat.com
20

0.0004 Low

EPSS

Percentile

10.1%

The Linux kernel, before version 4.14.3, is vulnerable to a denial of service in drivers/md/dm.c:dm_get_from_kobject() which can be caused by local users leveraging a race condition with __dm_destroy() during creation and removal of DM devices. Only privileged local users (with CAP_SYS_ADMIN capability) can directly perform the ioctl operations for dm device creation and removal and this would typically be outside the direct control of the unprivileged attacker.