An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure of kernel stack memory because aacsendraw_srb does not initialize the reply structure.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-18549.json"
[
{
"id": "CVE-2017-18549-45c001ac",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@342ffc26693b528648bdc9377e51e4f2450b4860",
"target": {
"file": "drivers/scsi/aacraid/commctrl.c",
"function": "aac_get_hba_info"
},
"digest": {
"function_hash": "230669924002154051818739397669856285452",
"length": 654.0
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"id": "CVE-2017-18549-930445c4",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@342ffc26693b528648bdc9377e51e4f2450b4860",
"target": {
"file": "drivers/scsi/aacraid/commctrl.c",
"function": "aac_send_raw_srb"
},
"digest": {
"function_hash": "168610316143558238280128657977737202781",
"length": 12535.0
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"id": "CVE-2017-18549-c93f1f52",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@342ffc26693b528648bdc9377e51e4f2450b4860",
"target": {
"file": "drivers/scsi/aacraid/commctrl.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"174463900923642785649936437891246577215",
"32320082887647401781553083196784407769",
"235689032306375446360241098481283874490",
"36315040324713832112817696595153417762",
"22076131600823078339048294373078853604",
"275984256216337068600159932014340291032"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line"
}
]