漏洞信息详情
Linux kernel 资源管理错误漏洞
漏洞简介
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。
Linux kernel 4.14.4之前版本中的mm/madvise.c文件的‘madvise_willneed’函数中存在资源管理错误漏洞,该漏洞源于网络系统或产品对系统资源(如内存、磁盘空间、文件等)的管理不当。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.4
参考网址
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2018:3083
来源:UBUNTU
链接:https://usn.ubuntu.com/3655-2/
来源:UBUNTU
链接:https://usn.ubuntu.com/3657-1/
来源:MISC
链接:https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.4
来源:MISC
链接:http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6ea8d958a2c95a1d514015d4e29ba21a8c0a1a91
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2018:3096
来源:UBUNTU
链接:https://usn.ubuntu.com/3619-2/
来源:MISC
链接:https://github.com/torvalds/linux/commit/6ea8d958a2c95a1d514015d4e29ba21a8c0a1a91
来源:UBUNTU
链接:https://usn.ubuntu.com/3653-2/
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2018:2948
来源:UBUNTU
链接:https://usn.ubuntu.com/3655-1/
来源:UBUNTU
链接:https://usn.ubuntu.com/3619-1/
来源:UBUNTU
链接:https://usn.ubuntu.com/3653-1/
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:3967
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:4061
来源:www.ibm.com
链接:http://www.ibm.com/support/docview.wss?uid=ibm10883258
来源:www-01.ibm.com
链接:https://www-01.ibm.com/support/docview.wss?uid=ibm10872832
来源:www.ibm.com
链接:http://www.ibm.com/support/docview.wss?uid=ibm10881053
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/76126
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155532/Red-Hat-Security-Advisory-2019-4057-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4547/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.2341/
来源:www.ibm.com
链接:http://www.ibm.com/support/docview.wss?uid=ibm10881424
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.1800/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155466/Red-Hat-Security-Advisory-2019-3967-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4486/
受影响实体
- Linux Linux_kernel:2.6.20.11<!--2000-1-1-->
- Linux Linux_kernel:2.6.20.12<!--2000-1-1-->
- Linux Linux_kernel:3.3:Rc4<!--2000-1-1-->
- Linux Linux_kernel:3.3:Rc5<!--2000-1-1-->
- Linux Linux_kernel:3.3<!--2000-1-1-->
补丁
- Linux kernel 安全漏洞的修复措施<!--2018-3-5-->
还没有评论,来说两句吧...