Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:12404
HistoryJan 15, 2019 - 9:16 a.m.

Denial Of Service (DoS)

2019-01-1509:16:46
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.0004 Low

EPSS

Percentile

5.1%

Linux kernel is vulnerable to denial of service. It was found that the blk_rq_map_user_iov() function in the Linux kernel’s block device implementation did not properly restrict the type of iterator, which could allow a local attacker to read or write to arbitrary kernel memory locations or cause a denial of service (use-after-free) by leveraging write access to a /dev/sg device.