CVE-2018-12929: Use After Free
A flaw was found in ntfsreadlockedinode in the ntfs.ko filesystem driver in the Linux kernel. This allows attackers to trigger a use-after-free read and possibly cause a denial of service via a crafted ntfs filesystem.
Other sources
ntfsreadlockedinode in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a use-after-free read and possibly cause a denial of service (kernel oops or panic) via a crafted ntfs filesystem.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-12929?
CVE-2018-12929 has a medium severity rating due to its potential to cause denial of service.
How do I fix CVE-2018-12929?
To fix CVE-2018-12929, update to the latest kernel version that addresses this vulnerability.
What is affected by CVE-2018-12929?
CVE-2018-12929 affects multiple Linux kernel versions including kernel-rt and certain distributions of Ubuntu.
What kind of attack does CVE-2018-12929 enable?
CVE-2018-12929 allows attackers to trigger a use-after-free read, potentially leading to denial of service.
Is CVE-2018-12929 specific to any operating system?
Yes, CVE-2018-12929 is specifically associated with the Linux kernel and its ntfs filesystem driver.