imPC@ndo IT

Tracker / CVE-2015-8845

CVE-2015-8845

Medium 5.5

The tm_reclaim_thread function in arch/powerpc/kernel/process.c in the Linux kernel before 4.4.1 on powerpc platforms does not ensure that TM suspend mode exists before proceeding with a tm_reclaim call, which allows local users to cause a denial of service (TM Bad Thing exception and panic) via a crafted application.

Affected products and versions

linux linux_kernel · … → 4.4
novell suse_linux_enterprise_desktop
novell suse_linux_enterprise_server
suse suse_linux_enterprise_live_patching
suse suse_linux_enterprise_module_for_public_cloud
suse suse_linux_enterprise_real_time_extension
suse suse_linux_enterprise_software_development_kit
suse suse_linux_enterprise_workstation_extension

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References