Note:
This project will be discontinued after December 13, 2021. [more]
2017-07-20
Buffer overflow in the mp_override_legacy_irq() function in arch/x86/kernel/acpi/boot.c in the Linux kernel through 3.2 allows local users to gain privileges via a crafted ACPI table.
Products | Ubuntu_linux, Linux_kernel |
Type | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') (CWE-120) |
First patch | - None (likely due to unavailable code) |
Patches |
• https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=dad5ab0db8deac535d03e3fe3d8f2892173fa6a4
• https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=70ac67826602edf8c0ccb413e5ba7eacf597a60c |
Links |
• https://access.redhat.com/errata/RHSA-2018:0654
• http://www.securityfocus.com/bid/100010 • https://source.android.com/security/bulletin/pixel/2018-01-01 • https://usn.ubuntu.com/3754-1/ • https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=96301209473afd3f2f274b91cb7082d161b9be65 |