FlawAtlas
Search the atlas
UBUNTU-CVE-2018-11508 Moderate

UBUNTU-CVE-2018-11508

The compat_get_timex function in kernel/compat.c in the Linux kernel before 4.16.9 allows local users to obtain sensitive information from kernel memory via adjtimex.

Exploit probability Not scored
Published May 28, 2018
Required by Not available
Last source change April 22, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:16.04:LTS linux-azure

16 explicit affected versions

Ubuntu:16.04:LTS linux-gcp

15 explicit affected versions

Ubuntu:16.04:LTS linux-hwe

34 explicit affected versions

Ubuntu:16.04:LTS linux-oem

13 explicit affected versions

Ubuntu:18.04:LTS linux

12 explicit affected versions

Ubuntu:18.04:LTS linux-aws

7 explicit affected versions

Ubuntu:18.04:LTS linux-azure

7 explicit affected versions

Ubuntu:18.04:LTS linux-gcp

6 explicit affected versions

Ubuntu:18.04:LTS linux-kvm

7 explicit affected versions

Ubuntu:18.04:LTS linux-oem

4 explicit affected versions

Ubuntu:18.04:LTS linux-raspi2

8 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

related USN-3697-1

04 / EVIDENCE

Source records

Open Source Vulnerabilities UBUNTU-CVE-2018-11508

The compat_get_timex function in kernel/compat.c in the Linux kernel before 4.16.9 allows local users to obtain sensitive information from kernel memory via adjtimex.

View original source

05 / REFERENCES

Further evidence