Issue metadata
Sign in to add a comment
|
CrOS: Vulnerability reported in Linux kernel |
||||||||||||||||||||||
Issue descriptionVOMIT (go/vomit) has received an external vulnerability report for the Linux kernel. Advisory: CVE-2014-9940 Details: http://vomit.googleplex.com/advisory?id=CVE/CVE-2014-9940 CVSS severity score: 7.6/10.0 Description: The regulator_ena_gpio_free function in drivers/regulator/core.c in the Linux kernel before 3.19 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted application. This bug was filed by http://go/vomit Please contact us at vomit-team@google.com if you need any assistance.
,
May 15 2017
Already fixed in v3.10..v3.18 with b/37858885. Code does not exist in v3.8.
,
May 15 2017
,
Aug 21 2017
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jan 22 2018
|
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by aarya@google.com
, May 15 2017Labels: Security_Severity-High Security_Impact-Stable Pri-1
Owner: groeck@chromium.org
Status: Assigned (was: Untriaged)