First published: Thu Apr 12 2018(Updated: )
A flaw was found in ntfs_read_locked_inode in the ntfs.ko filesystem driver in the Linux kernel. This allows attackers to trigger a use-after-free read and possibly cause a denial of service via a crafted ntfs filesystem.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel-rt | <1:3.10.0-693.46.1.rt56.639.el6 | 1:3.10.0-693.46.1.rt56.639.el6 |
Linux Kernel | =4.15 | |
Ubuntu | =16.04.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12929 has a medium severity rating due to its potential to cause denial of service.
To fix CVE-2018-12929, update to the latest kernel version that addresses this vulnerability.
CVE-2018-12929 affects multiple Linux kernel versions including kernel-rt and certain distributions of Ubuntu.
CVE-2018-12929 allows attackers to trigger a use-after-free read, potentially leading to denial of service.
Yes, CVE-2018-12929 is specifically associated with the Linux kernel and its ntfs filesystem driver.