An issue was discovered in the Linux kernel before 4.18.6. An information leak in cdromioctldrive_status in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds checking. This is similar to CVE-2018-10940.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-16658.json"
[
{
"id": "CVE-2018-16658-469f8913",
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"59882787446580534645138537252142091219",
"6905010136628044391933546674317243439",
"172628892958148109007190018578528900009",
"325435050577780514985588022226831843814"
]
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8f3fafc9c2f0ece10832c25f7ffcb07c97a32ad4",
"target": {
"file": "drivers/cdrom/cdrom.c"
},
"deprecated": false
},
{
"id": "CVE-2018-16658-c6aae2e6",
"signature_type": "Function",
"digest": {
"function_hash": "274157669296529304865332066007098348421",
"length": 458.0
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8f3fafc9c2f0ece10832c25f7ffcb07c97a32ad4",
"target": {
"function": "cdrom_ioctl_drive_status",
"file": "drivers/cdrom/cdrom.c"
},
"deprecated": false
}
]