Your submission was sent successfully! Close

CVE-2018-1000200

Published: 23 April 2018

The Linux Kernel versions 4.14, 4.15, and 4.16 has a null pointer dereference which can result in an out of memory (OOM) killing of large mlocked processes. The issue arises from an oom killed process's final thread calling exit_mmap(), which calls munlock_vma_pages_all() for mlocked vmas.This can happen synchronously with the oom reaper's unmap_page_range() since the vma's VM_LOCKED bit is cleared before munlocking (to determine if any other vmas share the memory and are mlocked).

From the Ubuntu security team

It was discovered that, when attempting to handle an out-of-memory situation, a null pointer dereference could be triggered in the Linux kernel in some circumstances. A local attacker could use this to cause a denial of service (system crash).

Priority

Medium

CVSS 3 base score: 5.5

Status

Package Release Status
linux
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-33.36)
Patches:
Introduced by 212925802454672e6cd2949a727f5e2c1377bf06
Fixed by 27ae357fa82be5ab73b2ef8d39dcb8ca2563483a
linux-aws
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-1020.20)
linux-azure
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-1022.23)
linux-azure-edge
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(4.18.0-1003.3~18.04.1)
linux-euclid
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-flo
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-gcp
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-1018.19)
linux-gke
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-goldfish
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-grouper
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-hwe
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable

linux-hwe-edge
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(4.18.0-11.12~18.04.1)
linux-kvm
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-1020.20)
linux-lts-trusty
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-lts-utopic
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-lts-vivid
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-lts-wily
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-lts-xenial
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-maguro
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-mako
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-manta
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

linux-oem
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-1017.20)
linux-raspi2
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (4.15.0-1021.23)
linux-snapdragon
Launchpad, Ubuntu, Debian
Upstream
Released (4.17~rc5)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable