Description
drivers/scsi/libsas/sas_scsi_host.c in the Linux kernel before 4.16 allows local users to cause a denial of service (ata qc leak) by triggering certain failure conditions. NOTE: a third party disputes the relevance of this report because the failure can only occur for physically proximate attackers who unplug SAS Host Bus Adapter cables
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1423-1 | linux-4.9 new package |
Ubuntu USN |
USN-3678-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3678-2 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-3678-3 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-3678-4 | Linux kernel (Raspberry Pi 2) vulnerabilities |
Ubuntu USN |
USN-3696-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3696-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3754-1 | Linux kernel vulnerabilities |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 25 Oct 2024 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
threat_severity
|
threat_severity
|
Thu, 24 Oct 2024 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
threat_severity
|
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T07:32:00.700Z
Reserved: 2018-04-11T00:00:00.000Z
Link: CVE-2018-10021
No data.
Status : Modified
Published: 2018-04-11T17:29:00.300
Modified: 2024-11-21T03:40:41.460
Link: CVE-2018-10021
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Ubuntu USN