CVE-2018-14775: Input Validation
Published Aug 1, 2018
·Updated
tssalloc in sys/arch/i386/i386/gdt.c in OpenBSD 6.2 and 6.3 has a Local Denial of Service (system crash) due to incorrect I/O port access control on the i386 architecture.
Affected Software
2 affected components
OpenBSD OpenBSD=6.2
OpenBSD OpenBSD=6.3
Remediation
Event History
Aug 1, 2018
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this OpenBSD vulnerability?
The vulnerability ID for this OpenBSD vulnerability is CVE-2018-14775.
2
What is the severity of CVE-2018-14775?
CVE-2018-14775 has a severity level of medium with a score of 5.5.
3
Which versions of OpenBSD are affected by CVE-2018-14775?
OpenBSD versions 6.2 and 6.3 are affected by CVE-2018-14775.
4
What is the root cause of CVE-2018-14775?
CVE-2018-14775 is caused by incorrect I/O port access control on the i386 architecture in OpenBSD 6.2 and 6.3.
5
How can CVE-2018-14775 be exploited?
CVE-2018-14775 can be exploited by a local attacker to cause a denial of service, resulting in a system crash.