In the Linux kernel 4.14.x, 4.15.x, 4.16.x, 4.17.x, and 4.18.x before 4.18.13, faulty computation of numeric bounds in the BPF verifier permits out-of-bounds memory accesses because adjust_scalar_min_max_vals in kernel/bpf/verifier.c mishandles 32-bit right shifts.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-17T19:00:00

Updated: 2024-08-05T11:08:21.850Z

Reserved: 2018-10-17T00:00:00

Link: CVE-2018-18445

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-10-17T19:29:00.757

Modified: 2023-01-17T21:34:37.093

Link: CVE-2018-18445

cve-icon Redhat

Severity : Moderate

Publid Date: 2018-10-05T00:00:00Z

Links: CVE-2018-18445 - Bugzilla