VDB
BDU%3A2019-02397
BDU%3A2019-02397
PUBLISHED
CVSS 7.199999809265137 HIGH
Уязвимость функции ext4_xattr_set_entry ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код с повышенными привилегиями или вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения | Linux |
Timeline
- Jul 4, 2019 CVE Published
- May 27, 2024 CVE Updated
- Mar 18, 2026 Distribution Patch
- Mar 18, 2026 Distribution Patch
- Mar 18, 2026 Distribution Patch
- Mar 23, 2026 Distribution Patch
- Mar 23, 2026 Distribution Patch
- Mar 23, 2026 Distribution Patch
- Mar 23, 2026 Distribution Patch
References
- http://www.securityfocus.com/bid/104858 url
- https://access.redhat.com/errata/RHSA-2019:0162 url
- https://bugzilla.kernel.org/show_bug.cgi?id=199347 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.16.18 url
- https://nvd.nist.gov/vuln/detail/CVE-2018-10840 url
- https://ubuntu.com/security/notices/USN-3752-2 url
- https://usn.ubuntu.com/3752-1/ url
- https://usn.ubuntu.com/3752-3/ url
- https://usn.ubuntu.com/usn/usn-3752-3 url
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10840 url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10840 url
- https://exploit.kitploit.com/2018/12/linux-kernel-cve-2018-10840-local-heap.html url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.52 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.17.3 url
- https://ubuntu.com/security/notices/USN-3752-1 url
- https://ubuntu.com/security/notices/USN-3752-3 url
- https://usn.ubuntu.com/3752-2/ url
- https://usn.ubuntu.com/usn/usn-3752-1 url
- https://usn.ubuntu.com/usn/usn-3752-2 url
- https://www.cve.org/CVERecord?id=CVE-2018-10840 url