Early Access — Mondoo Vulnerability Intelligence is currently in preview.
Jann Horn discovered that the userfaultd implementation in the Linux kernel did not properly restrict access to certain ioctls. A local attacker could use this possibly to modify files. (CVE-2018-18397)
It was discovered that the crypto subsystem of the Linux kernel leaked uninitialized memory to user space in some situations. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2018-19854)
Jann Horn discovered a race condition in the fork() system call in the Linux kernel. A local attacker could use this to gain access to services that cache authorizations. (CVE-2019-6133)
4.15.0-46.494.15.0-1033.354.15.0-1028.294.15.0-1030.304.15.0-1034.394.15.0-1009.114.15.0-1032.34