#VU14184 Out-of-bounds read in Linux kernel - CVE-2017-18344
Published: August 2, 2018 / Updated: June 17, 2021
Linux kernel
Linux Foundation
Description
The vulnerability allows a local attacker to obtain potentially sensitive information.
The vulnerability exists due to out-of-bounds memory read error in the 'sigevent->sigev_notify' field of show_timer() function in the timer subsystem. A local attacker can obtain potentially sensitive information from system memory.