CVE-2014-7843 (retired)

Priority
Description
The __clear_user function in arch/arm64/lib/clear_user.S in the Linux
kernel before 3.17.4 on the ARM64 platform allows local users to cause a
denial of service (system crash) by reading one byte beyond a /dev/zero
page boundary.
Ubuntu-Description
Miloš Prchlík reported a flaw in how the ARM64 platform handles a single
byte overflow in __clear_user. A local user could exploit this flaw to
cause a denial of service (system crash) by reading one byte beyond a
/dev/zero page boundary.
Notes
 jdstrand> android kernels (flo, goldfish, grouper, maguro, mako and manta) are
  not supported on the Ubuntu Touch 14.04 preview kernels
 jdstrand> linux-lts-saucy no longer receives official support
 jdstrand> linux-lts-quantal no longer receives official support
Package
Source: linux (LP Ubuntu Debian)
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (4.2.0-16.19)
Patches:
Introduced by 0aea86a2176c22647a5b683768f858d880d5e05bFixed by 97fc15436b36ee3956efad83e22a557991f7d19d
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
This package is not directly supported by the Ubuntu Security Team
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Patches:
This package is not directly supported by the Ubuntu Security Team
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
This package is not directly supported by the Ubuntu Security Team
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (4.2.0-1014.21)
Package
Upstream:released (3.18~rc5)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
More Information

Updated: 2019-09-19 15:50:57 UTC (commit d32ebc32606b9517c6fa7d65a15441e2a57a6de5)