CVE-2017-18344 | Linux Kernel up to 4.14.7 posix-timers.c show_timer sigevent->sigev_notify out-of-bounds (RHSA-2018:2948 / EDB-45175)
A vulnerability was found in Linux Kernel up to 4.14.7. It has been rated as critical. This issue affects the function show_timer of the file kernel/time/posix-timers.c. The manipulation of the argument sigevent->sigev_notify leads to out-of-bounds read.
The identification of this vulnerability is CVE-2017-18344. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.