VDB
CVE-2018-12929
CVE-2018-12929
PUBLISHED
ntfs_read_locked_inode in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a use-after-free read and possibly cause a denial of service (kernel oops or panic) via a crafted ntfs filesystem.
EPSS 0.12% · 30.6th percentile
Risk Scores
EPSS Score
0.12%
30.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:24.04:LTS | linux-ibm | 6.8.0-1004.4, 6.8.0-1006.6, 6.8.0-1037.37 |
| Ubuntu:22.04:LTS | linux-hwe-6.5 | 6.5.0-14.14~22.04.1, 6.5.0-15.15~22.04.1, 6.5.0-18.18~22.04.1 |
| Ubuntu:24.04:LTS | linux | 6.8.0-63.66, 6.8.0-64.67, 6.8.0-71.71 |
| Ubuntu:Pro:18.04:LTS | linux-oracle-5.4 | 5.4.0-1143.153~18.04.1, *, * |
| Ubuntu:24.04:LTS | linux-gcp-6.14 | 6.14.0-1018.19~24.04.1, 6.14.0-1020.21~24.04.1, 6.14.0-1021.22~24.04.1 |
| Ubuntu:Pro:18.04:LTS | linux-hwe-5.4 | *, *, * |
| Ubuntu:18.04:LTS | linux-oem | 4.15.0-1087.97, 4.15.0-1069.79, 4.15.0-1080.90 |
| Ubuntu:18.04:LTS | linux-oracle-5.3 | 5.3.0-1018.20~18.04.1, *, * |
| Ubuntu:20.04:LTS | linux-gke-5.15 | 5.15.0-1036.41~20.04.1, 5.15.0-1038.43~20.04.1, 5.15.0-1039.44~20.04.1 |
| Ubuntu:20.04:LTS | linux-hwe-5.8 | 5.8.0-53.60~20.04.1, *, * |
| Ubuntu:22.04:LTS | linux-gcp-6.2 | 6.2.0-1013.13~22.04.1, 6.2.0-1012.12~22.04.1, 6.2.0-1016.18~22.04.1 |
| Ubuntu:Pro:20.04:LTS | linux-lowlatency-hwe-5.15 | *, *, * |
| Ubuntu:Nvidia-BlueField:22.04:LTS | linux-bluefield | 5.15.0-1084.86, 5.15.0-1065.67, 5.15.0-1064.66 |
| Ubuntu:22.04:LTS | linux-allwinner-5.19 | 0, 5.19.0-1007.7~22.04.1, 5.19.0-1009.9~22.04.1 |
| Ubuntu:22.04:LTS | linux-nvidia-tegra | 5.15.0-1027.27, 5.15.0-1026.26, 5.15.0-1034.34 |
| Ubuntu:20.04:LTS | linux-gkeop | 5.4.0-1076.80, 5.4.0-1018.19, 5.4.0-1016.17 |
| Ubuntu:20.04:LTS | linux-oracle-5.13 | *, *, * |
| Ubuntu:Pro:Realtime:22.04:LTS | linux-intel-iot-realtime | 5.15.0-1033.35, 5.15.0-1034.36, 5.15.0-1035.37 |
| Ubuntu:Pro:16.04:LTS | linux-azure | 4.15.0-1042.46, 0, 4.11.0-1009.9 |
| Ubuntu:Pro:20.04:LTS | linux-aws-5.15 | 5.15.0-1062.68~20.04.1, 0, 5.15.0-1014.18~20.04.1 |
…and 218 more
Timeline
- Jun 28, 2018 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 28, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Jan 8, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2018-12929 third-party-advisory
- https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1763403 third-party-advisory
- https://marc.info/?l=linux-ntfs-dev&m=152413769810234&w=2 third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2018-12929 third-party-advisory