First published: Thu Jan 11 2018(Updated: )
Race condition in Jungo Windriver 12.5.1 allows local users to cause a denial of service (buffer overflow) or gain system privileges by flipping pool buffer size, aka a "double fetch" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jungo WinDriver | <12.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5189 is considered a critical vulnerability due to its potential to allow local users to escalate privileges or cause a denial of service.
CVE-2018-5189 is caused by a race condition that occurs when the pool buffer size is manipulated.
To fix CVE-2018-5189, upgrade Jungo Windriver to version 12.6.0 or later.
CVE-2018-5189 affects local users of Jungo Windriver version prior to 12.6.0.
CVE-2018-5189 enables attacks that may lead to denial of service or privilege escalation.