Total vulnerabilities in the database
In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.
Software | From | Fixed in |
---|---|---|
linux / linux_kernel | 4.9 | 4.9.162 |
linux / linux_kernel | 4.14 | 4.14.105 |
linux / linux_kernel | 4.19 | 4.19.27 |
linux / linux_kernel | 4.20 | 4.20.14 |
debian / debian_linux | 8.0 | 8.0.x |
redhat / enterprise_linux | 7.0 | 7.0.x |
redhat / enterprise_linux | 8.0 | 8.0.x |
opensuse / leap | 42.3 | 42.3.x |
opensuse / leap | 15.0 | 15.0.x |
canonical / ubuntu_linux | 18.10 | 18.10.x |
canonical / ubuntu_linux | 14.04 | 14.04.x |
canonical / ubuntu_linux | 16.04 | 16.04.x |
canonical / ubuntu_linux | 12.04 | 12.04.x |