Total vulnerabilities in the database
In the Linux kernel before version 4.12, Kerberos 5 tickets decoded when using the RXRPC keys incorrectly assumes the size of a field. This could lead to the size-remaining variable wrapping and the data pointer going over the end of the buffer. This could possibly lead to memory corruption and possible privilege escalation.
Software | From | Fixed in |
---|---|---|
linux / linux_kernel | 3.3 | 3.10.108 |
linux / linux_kernel | 3.19 | 4.1.43 |
linux / linux_kernel | 3.17 | 3.18.59 |
linux / linux_kernel | 4.2 | 4.4.75 |
linux / linux_kernel | 4.5 | 4.9.35 |
linux / linux_kernel | 4.10 | 4.11.8 |
linux / linux_kernel | 3.11 | 3.16.45 |
linux / linux_kernel | - | 3.2.90 |
debian / debian_linux | 8.0 | 8.0.x |
debian / debian_linux | 9.0 | 9.0.x |
redhat / enterprise_mrg | 2.0 | 2.0.x |