An integer overflow in the uvesafbsetcmap function in drivers/video/fbdev/uvesafb.c in the Linux kernel before 4.17.4 could result in local attackers being able to crash the kernel or potentially elevate privileges because kmallocarray is not used.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-13406.json"
[
{
"digest": {
"line_hashes": [
"174057257570793829310526878244057758439",
"171760387648604523948946318641837650486",
"311123016204279449175893002000186011151",
"175863255085613507889218087342091476362"
],
"threshold": 0.9
},
"id": "CVE-2018-13406-9874762c",
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "drivers/video/fbdev/uvesafb.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@9f645bcc566a1e9f921bdae7528a01ced5bc3713",
"deprecated": false
},
{
"digest": {
"function_hash": "220691261312282679866296791506285774863",
"length": 926.0
},
"id": "CVE-2018-13406-cb7432e3",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "drivers/video/fbdev/uvesafb.c",
"function": "uvesafb_setcmap"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@9f645bcc566a1e9f921bdae7528a01ced5bc3713",
"deprecated": false
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-13406.json"
[
{
"digest": {
"function_hash": "220691261312282679866296791506285774863",
"length": 926.0
},
"id": "CVE-2018-13406-063eab9b",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "drivers/video/fbdev/uvesafb.c",
"function": "uvesafb_setcmap"
},
"source": "https://github.com/torvalds/linux/commit/9f645bcc566a1e9f921bdae7528a01ced5bc3713",
"deprecated": false
},
{
"digest": {
"line_hashes": [
"174057257570793829310526878244057758439",
"171760387648604523948946318641837650486",
"311123016204279449175893002000186011151",
"175863255085613507889218087342091476362"
],
"threshold": 0.9
},
"id": "CVE-2018-13406-49b81b96",
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "drivers/video/fbdev/uvesafb.c"
},
"source": "https://github.com/torvalds/linux/commit/9f645bcc566a1e9f921bdae7528a01ced5bc3713",
"deprecated": false
}
]