Blog | G5 Cyber Security

CVE-2018-17182 -Google Project Zero reports a new Linux Kernel flaw

Google Project Zero disclosed details for a high severity Linux kernel a use-after-free vulnerability tracked as CVE-2018-17182. The vulnerability was introduced in August 2014 with the release of version 3.16 of the Linux kernel. The issue could be exploited by an attacker trigger a DoS condition or to execute arbitrary code with root privileges on the vulnerable system. The expert reported the flaws to Linux kernel development team on September 12 and they fixed it in just two days later. The researcher warns of the possibility that threat actors can already develop an exploit for the vulnerability.”]

Source: https://securityaffairs.co/wordpress/76631/hacking/cve-2018-1718-linux-kernel-flaw.html

Exit mobile version