Lucene search

K
ubuntucveUbuntu.comUB:CVE-2018-13053
HistoryJul 02, 2018 - 12:00 a.m.

CVE-2018-13053

2018-07-0200:00:00
ubuntu.com
ubuntu.com
30

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

EPSS

0.001

Percentile

30.6%

The alarm_timer_nsleep function in kernel/time/alarmtimer.c in the Linux
kernel through 4.17.3 has an integer overflow via a large relative timeout
because ktime_add_safe is not used.

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchlinux< 4.15.0-58.64UNKNOWN
ubuntu16.04noarchlinux< 4.4.0-139.165UNKNOWN
ubuntu18.04noarchlinux-aws< 4.15.0-1047.49UNKNOWN
ubuntu14.04noarchlinux-aws< 4.4.0-1034.37UNKNOWN
ubuntu16.04noarchlinux-aws< 4.4.0-1072.82UNKNOWN
ubuntu16.04noarchlinux-aws-hwe< 4.15.0-1047.49~16.04.1UNKNOWN
ubuntu18.04noarchlinux-azure< 4.18.0-1011.11~18.04.1UNKNOWN
ubuntu16.04noarchlinux-azure< 4.15.0-1055.60UNKNOWN
ubuntu18.04noarchlinux-azure-edge< 4.18.0-1011.11~18.04.1UNKNOWN
ubuntu16.04noarchlinux-azure-edge< 4.15.0-1055.60UNKNOWN
Rows per page:
1-10 of 281

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

EPSS

0.001

Percentile

30.6%