Early Access — Mondoo Vulnerability Intelligence is currently in preview.
It was discovered that the IPsec implementation in the Linux kernel did not properly allocate enough memory when performing ESP transformations, leading to a heap-based buffer overflow. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.
4.15.0-1120.1344.15.0-1091.1004.15.0-1107.1144.15.0-1136.149~14.04.14.15.0-1126.135~16.04.24.15.0-1136.149~16.04.14.15.0-1120.134~16.04.14.15.0-1091.100~16.04.1