Vulnerability CVE-2018-10876: Information

Description

A flaw was found in Linux kernel in the ext4 filesystem code. A use-after-free is possible in ext4_ext_remove_space() function when mounting and operating a crafted ext4 image.

Severity: MEDIUM (5.5) Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Published: July 26, 2018
Modified: Feb. 13, 2023
Error type identifier: CWE-416

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
kernel-image-std-defsisyphus4.14.55-alt16.1.87-alt1ALT-PU-2018-2002-1209815Fixed
kernel-image-std-defp104.14.55-alt15.10.213-alt1ALT-PU-2018-2002-1209815Fixed
kernel-image-std-defp94.14.55-alt15.4.274-alt1ALT-PU-2018-2002-1209815Fixed
kernel-image-std-defp84.9.112-alt0.M80P.14.9.337-alt0.M80P.1ALT-PU-2018-2019-1209820Fixed
kernel-image-std-defc9f24.14.55-alt15.10.214-alt0.c9f.2ALT-PU-2018-2002-1209815Fixed
kernel-image-std-defc74.4.143-alt0.M70C.14.4.277-alt0.M70C.1ALT-PU-2018-2130-1211180Fixed
kernel-image-std-paep84.4.140-alt0.M80P.14.4.159-alt0.M80P.1ALT-PU-2018-2023-1209821Fixed
kernel-image-std-paec9f24.4.140-alt14.19.72-alt1ALT-PU-2018-2001-1209819Fixed
kernel-image-un-defsisyphus4.17.6-alt16.6.28-alt1ALT-PU-2018-2003-1209817Fixed
kernel-image-un-defp104.17.6-alt16.1.85-alt1ALT-PU-2018-2003-1209817Fixed
kernel-image-un-defp94.17.6-alt15.10.215-alt1ALT-PU-2018-2003-1209817Fixed
kernel-image-un-defp84.14.55-alt0.M80P.14.19.310-alt0.M80P.1ALT-PU-2018-2020-1209818Fixed
kernel-image-un-defc10f14.17.6-alt16.1.85-alt0.c10f.1ALT-PU-2018-2003-1209817Fixed
kernel-image-un-defc9f24.17.6-alt15.10.29-alt2ALT-PU-2018-2003-1209817Fixed
kernel-image-un-defc74.9.277-alt0.M70C.14.9.277-alt0.M70C.1ALT-PU-2021-3032-1281292Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

      Configuration 2

      cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*

      cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*

      cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

      Configuration 3

      cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*