Note:
This project will be discontinued after December 13, 2021. [more]
2017-08-31
An integer overflow in the qla2x00_sysfs_write_optrom_ctl function in drivers/scsi/qla2xxx/qla_attr.c in the Linux kernel through 4.12.10 allows local users to cause a denial of service (memory corruption and system crash) by leveraging root access.
Products | Linux_kernel |
Type | Integer Overflow or Wraparound (CWE-190) |
First patch | - None (likely due to unavailable code) |
Links |
• https://usn.ubuntu.com/3583-1/
• http://www.securityfocus.com/bid/100571 • https://lists.debian.org/debian-lts-announce/2017/12/msg00004.html • https://bugzilla.kernel.org/show_bug.cgi?id=194061 • https://patchwork.kernel.org/patch/9929625/ |