Early Access — Mondoo Vulnerability Intelligence is currently in preview.
It was discovered that the IPsec implementation in the Linux kernel did not properly allocate enough memory when performing ESP transformations, leading to a heap-based buffer overflow. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.
4.15.0-175.1844.15.0-1126.1354.15.0-1136.1494.15.0-1040.454.15.0-1112.1154.15.0-1125.1344.15.0-175.184~16.04.1