5.5

CVE-2018-6554

Memory leak in the irda_bind function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allows local users to cause a denial of service (memory consumption) by repeatedly binding an AF_IRDA socket.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version < 4.17
Canonical ≫ Ubuntu Linux Version 12.04 SwEdition esm
Canonical ≫ Ubuntu Linux Version 14.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 16.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 18.04 SwEdition lts
Debian ≫ Debian Linux Version 8.0
Debian ≫ Debian Linux Version 9.0
Debian ≫ Debian Linux Version 8.0
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.51% 0.391
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
NIST 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource.

CWE-772 Missing Release of Resource after Effective Lifetime

The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.

https://usn.ubuntu.com/3777-3/
Third Party Advisory
https://usn.ubuntu.com/3776-1/
Third Party Advisory
https://usn.ubuntu.com/3776-2/
Third Party Advisory
https://lists.debian.org/debian-lts-announce/2018/10/msg00003.html
Third Party Advisory
https://www.debian.org/security/2018/dsa-4308
Third Party Advisory
https://lists.debian.org/debian-lts-announce/2019/03/msg00017.html
Third Party Advisory
Mailing List
https://usn.ubuntu.com/3775-1/
Third Party Advisory
https://usn.ubuntu.com/3775-2/
Third Party Advisory
https://usn.ubuntu.com/3777-1/
Third Party Advisory
https://usn.ubuntu.com/3777-2/
Third Party Advisory
http://www.securityfocus.com/bid/105302
Third Party Advisory
VDB Entry
https://www.spinics.net/lists/stable/msg255030.html
Patch
Third Party Advisory
https://www.spinics.net/lists/stable/msg255034.html
Patch
Third Party Advisory