kernel drivers before version 4.17-rc1 are vulnerable to a weakness...
Vulnerability Description
kernel drivers before version 4.17-rc1 are vulnerable to a weakness in the Linux kernel's implementation of random seed data. Programs, early in the boot sequence, could use the data allocated for the seed before it was sufficiently generated.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-1108
Credits & Attribution
No credits recorded in the NVD database.
References
- https://usn.ubuntu.com/3752-2/
- https://usn.ubuntu.com/3752-3/
- https://usn.ubuntu.com/3718-2/
- http://www.securityfocus.com/bid/104055
- https://www.debian.org/security/2018/dsa-4188
- https://usn.ubuntu.com/3718-1/
- https://usn.ubuntu.com/3752-1/
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1108
- https://lists.debian.org/debian-lts-announce/2022/07/msg00000.html
More from kernel
View All →Affected Vendor
kernel
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.