CVE-2017-18203: Linux Kernel

Medium severity, CVSS 4.7. EPSS: 0.3% chance of exploitation in the next 30 days.

The dm_get_from_kobject function in drivers/md/dm.c in the Linux kernel before 4.14.3 allow local users to cause a denial of service (BUG) by leveraging a race condition with __dm_destroy during creation and removal of DM devices.

Affected products

  • Linux Linux Kernel: before 4.14.3 (fixed in 4.14.3)

Published 2018-02-27. Last modified 2026-06-17.