Search CVE reports
171 – 180 of 595 results
CVE-2018-14734
Medium prioritySome fixes available 23 of 27
drivers/infiniband/core/ucma.c in the Linux kernel through 4.17.11 allows ucma_leave_multicast to access a certain data structure after a cleanup step in ucma_process_join, which allows attackers to cause a denial of service...
27 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Not affected | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Not affected | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Not affected | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Not affected | Not affected |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Not affected | Fixed |
CVE-2018-14678
Medium prioritySome fixes available 19 of 25
An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback entry point in arch/x86/entry/entry_64.S does not properly maintain RBX, which allows local users to cause a...
27 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Not affected |
linux-aws | — | — | — | Fixed | Not affected |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Not affected |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Not affected | Not in release |
linux-gke | — | — | — | Not affected | Ignored |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Not affected | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Not affected |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Not affected |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Not affected |
linux-snapdragon | — | — | — | Not affected | Not affected |
CVE-2018-14617
Low prioritySome fixes available 28 of 39
An issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference and panic in hfsplus_lookup() in fs/hfsplus/dir.c when opening a file (that is purportedly a hard link) in an hfs+ filesystem that...
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Not affected | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |
CVE-2018-14616
Low prioritySome fixes available 29 of 46
An issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference in fscrypt_do_page_crypto() in fs/crypto/crypto.c when operating on a file in a corrupted f2fs image.
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |
CVE-2018-14615
Low prioritySome fixes available 22 of 37
An issue was discovered in the Linux kernel through 4.17.10. There is a buffer overflow in truncate_inline_inode() in fs/f2fs/inline.c when umounting an f2fs image, because a length value may be negative.
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Not affected |
linux-aws | — | — | — | Fixed | Not affected |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Not affected |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Not affected |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Not affected |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Not affected |
linux-snapdragon | — | — | — | Fixed | Not affected |
CVE-2018-14614
Low prioritySome fixes available 29 of 46
An issue was discovered in the Linux kernel through 4.17.10. There is an out-of-bounds access in __remove_dirty_segment() in fs/f2fs/segment.c when mounting an f2fs image.
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |
CVE-2018-14613
Low prioritySome fixes available 29 of 46
An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in io_ctl_map_page() when mounting and operating a crafted btrfs image, because of a lack of block group item validation in...
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |
CVE-2018-14612
Low prioritySome fixes available 29 of 46
An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in btrfs_root_node() when mounting a crafted btrfs image, because of a lack of chunk block group mapping validation...
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |
CVE-2018-14611
Low prioritySome fixes available 29 of 46
An issue was discovered in the Linux kernel through 4.17.10. There is a use-after-free in try_merge_free_space() when mounting a crafted btrfs image, because of a lack of chunk type flag checks in btrfs_check_chunk_valid in...
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |
CVE-2018-14610
Low prioritySome fixes available 29 of 46
An issue was discovered in the Linux kernel through 4.17.10. There is out-of-bounds access in write_extent_buffer() when mounting and operating a crafted btrfs image, because of a lack of verification that each block group has a...
29 affected packages
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | — | — | — | Fixed | Fixed |
linux-aws | — | — | — | Fixed | Fixed |
linux-aws-hwe | — | — | — | Not in release | Fixed |
linux-azure | — | — | — | Fixed | Fixed |
linux-azure-edge | — | — | — | Fixed | Fixed |
linux-euclid | — | — | — | Not in release | Ignored |
linux-flo | — | — | — | Not in release | Ignored |
linux-gcp | — | — | — | Fixed | Fixed |
linux-gcp-edge | — | — | — | Fixed | Not in release |
linux-gke | — | — | — | Not in release | Ignored |
linux-gke-4.15 | — | — | — | Fixed | Not in release |
linux-gke-5.0 | — | — | — | Not affected | Not in release |
linux-goldfish | — | — | — | Not in release | Ignored |
linux-grouper | — | — | — | Not in release | Not in release |
linux-hwe | — | — | — | Fixed | Fixed |
linux-hwe-edge | — | — | — | Not affected | Fixed |
linux-kvm | — | — | — | Fixed | Fixed |
linux-lts-trusty | — | — | — | Not in release | Not in release |
linux-lts-utopic | — | — | — | Not in release | Not in release |
linux-lts-vivid | — | — | — | Not in release | Not in release |
linux-lts-wily | — | — | — | Not in release | Not in release |
linux-lts-xenial | — | — | — | Not in release | Not in release |
linux-maguro | — | — | — | Not in release | Not in release |
linux-mako | — | — | — | Not in release | Ignored |
linux-manta | — | — | — | Not in release | Not in release |
linux-oem | — | — | — | Fixed | Ignored |
linux-oracle | — | — | — | Fixed | Fixed |
linux-raspi2 | — | — | — | Fixed | Fixed |
linux-snapdragon | — | — | — | Fixed | Fixed |