Tracker / CVE-2015-8812
CVE-2015-8812
Critical 9.8
drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via crafted packets.
Affected products and versions
| canonical | ubuntu_linux |
|---|---|
| linux | linux_kernel · … → 3.2.78 |
| linux | linux_kernel · 3.11 → 3.12.56 |
| linux | linux_kernel · 3.13 → 3.14.63 |
| linux | linux_kernel · 3.15 → 3.16.35 |
| linux | linux_kernel · 3.17 → 3.18.31 |
| linux | linux_kernel · 3.19 → 4.1.22 |
| linux | linux_kernel · 3.3 → 3.10.99 |
| linux | linux_kernel · 4.2.0 → 4.4.4 |
| novell | suse_linux_enterprise_real_time_extension |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.