Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy directory, as demonstrated by the /sys/class/sas_phy/phy-1:0:12/invalid_dword_count file.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-1369-1 | linux security update |
![]() |
DSA-4187-1 | linux security update |
![]() |
DSA-4188-1 | linux security update |
![]() |
EUVD-2018-19469 | Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy directory, as demonstrated by the /sys/class/sas_phy/phy-1:0:12/invalid_dword_count file. |
![]() |
USN-3654-1 | Linux kernel vulnerabilities |
![]() |
USN-3654-2 | Linux kernel (Xenial HWE) vulnerabilities |
![]() |
USN-3656-1 | Linux kernel (Raspberry Pi 2, Snapdragon) vulnerabilities |
![]() |
USN-3697-1 | Linux kernel vulnerabilities |
![]() |
USN-3697-2 | Linux kernel (OEM) vulnerabilities |
![]() |
USN-3698-1 | Linux kernel vulnerabilities |
![]() |
USN-3698-2 | Linux kernel (Trusty HWE) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T06:37:57.906Z
Reserved: 2018-03-08T00:00:00
Link: CVE-2018-7757

No data.

Status : Modified
Published: 2018-03-08T14:29:00.567
Modified: 2024-11-21T04:12:40.657
Link: CVE-2018-7757


No data.