CVE-2018-14625
—CVSS 3.0
7.0 high
EPSS
<1%p26
Published
()
Modified
Description
A flaw was found in the Linux Kernel where an attacker may be able to have an uncontrolled read to kernel-memory from within a vm guest. A race condition between connect() and close() function may allow an attacker using the AF_VSOCK protocol to gather a 4 byte information leak or possibly intercept or corrupt AF_VSOCK messages destined to other clients.
In the news0 stories
No ingested article mentions this CVE yet.