296,855
Total vulnerabilities in the database
In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 4.9 | 4.9.162 |
| linux / linux_kernel | 4.14 | 4.14.105 |
| linux / linux_kernel | 4.19 | 4.19.27 |
| linux / linux_kernel | 4.20 | 4.20.14 |
| debian / debian_linux | 8.0 | 8.0.x |
| redhat / enterprise_linux | 7.0 | 7.0.x |
| redhat / enterprise_linux | 8.0 | 8.0.x |
| opensuse / leap | 42.3 | 42.3.x |
| opensuse / leap | 15.0 | 15.0.x |
| canonical / ubuntu_linux | 18.10 | 18.10.x |
| canonical / ubuntu_linux | 14.04 | 14.04.x |
| canonical / ubuntu_linux | 16.04 | 16.04.x |
| canonical / ubuntu_linux | 12.04 | 12.04.x |