Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:18361
HistoryMay 02, 2019 - 6:37 a.m.

Privilege Escalation

2019-05-0206:37:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.001 Low

EPSS

Percentile

38.4%

Linux kernel is vulnerable to memory corruption vulnerability. This is because the append path can be erroneously switched from UFO to non-UFO in ip_ufo_append_data() when building an UFO packet with MSG_MORE option. If unprivileged user namespaces are available, this flaw can be exploited to gain root privileges.