Description
An issue was discovered in the Linux kernel through 4.19. An information leak in cdrom_ioctl_select_disc in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds checking. This is similar to CVE-2018-10940 and CVE-2018-16658.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1715-1 | linux-4.9 security update |
Debian DLA |
DLA-1731-1 | linux security update |
Debian DLA |
DLA-1731-2 | linux regression update |
EUVD |
EUVD-2018-10426 | An issue was discovered in the Linux kernel through 4.19. An information leak in cdrom_ioctl_select_disc in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds checking. This is similar to CVE-2018-10940 and CVE-2018-16658. |
Ubuntu USN |
USN-3846-1 | Linux kernel vulnerability |
Ubuntu USN |
USN-3847-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3847-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-3847-3 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-3848-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3848-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3849-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3849-2 | Linux kernel (Trusty HWE) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T11:16:00.411Z
Reserved: 2018-10-27T00:00:00.000Z
Link: CVE-2018-18710
No data.
Status : Modified
Published: 2018-10-29T12:29:05.807
Modified: 2024-11-21T03:56:25.320
Link: CVE-2018-18710
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN