[FEDORA-2018-8dc60a4feb] Fedora 26: kernel

Severity High
Affected Packages 1
CVEs 3

The 4.14.14 stable update contains a number of important fixes across the tree.
This update also includes some PPC mitigations, and has been built with a
retpoline capable compiler for improved Spectre mitigation on x86_64.

Package Affected Version
pkg:rpm/fedora/kernel?distro=fedora-26 < 4.14.14.200.fc26
Source # ID Name URL
Bugzilla 1533890 Bug #1533890 - CVE-2018-5332 kernel: rds_message_alloc_sgs() function doesn't validate value used during DMA page allocation causes heap out-of-bounds write https://bugzilla.redhat.com/show_bug.cgi?id=1533890
Bugzilla 1533891 Bug #1533891 - CVE-2018-5333 kernel: Null pointer dereference in rds_atomic_free_op() allowing denial-of-service https://bugzilla.redhat.com/show_bug.cgi?id=1533891
Bugzilla 1533909 Bug #1533909 - CVE-2018-5344 kernel: drivers/block/loop.c mishandles lo_release serialization allowing denial-of-service https://bugzilla.redhat.com/show_bug.cgi?id=1533909
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/kernel?distro=fedora-26 fedora kernel < 4.14.14.200.fc26 fedora-26
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...