[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-10902":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":26,"aliases":27,"duplicate_of":9,"upstream":28,"downstream":29,"duplicates":112,"related":113,"reserved_at":9,"published_at":140,"modified_at":141,"state":142,"summary":143,"references_raw":152,"kevs":244,"epss":245,"epss_history":248,"metrics":517,"affected":529},"CVE-2018-10902","It was found that the raw midi kernel driver does not protect against concurrent access which leads to a double realloc (double free) in snd_rawmidi_input_params() and snd_rawmidi_output_status() which are part of snd_rawmidi_ioctl() handler in rawmidi.c file. A malicious local attacker could possibly use this for privilege escalation.",null,[11,20],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-415","Double Free","The product calls free() twice on the same memory address.","weakness","Draft","Variant","High",[],{"_key":21,"id":21,"name":22,"description":23,"type":15,"status":24,"abstraction":17,"likelihood_of_exploit":18,"capec":25},"CWE-416","Use After Free","The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory \"belongs\" to the code that operates on the new pointer.","Stable",[],[],[],[],[30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102,104,106,108,110],{"_key":31},"SUSE-SU-2018:2538-1",{"_key":33},"SUSE-SU-2018:2862-1",{"_key":35},"SUSE-SU-2021:0452-1",{"_key":37},"RHSA-2019:0415",{"_key":39},"RHSA-2019:0641",{"_key":41},"RHSA-2019:3967",{"_key":43},"SUSE-SU-2018:2539-1",{"_key":45},"SUSE-SU-2018:2775-1",{"_key":47},"SUSE-SU-2018:2776-1",{"_key":49},"SUSE-SU-2018:2787-1",{"_key":51},"SUSE-SU-2018:2858-1",{"_key":53},"SUSE-SU-2018:2860-1",{"_key":55},"SUSE-SU-2018:2864-1",{"_key":57},"SUSE-SU-2018:2879-1",{"_key":59},"SUSE-SU-2018:2907-1",{"_key":61},"SUSE-SU-2018:2908-1",{"_key":63},"SUSE-SU-2018:2908-2",{"_key":65},"SUSE-SU-2018:2940-1",{"_key":67},"SUSE-SU-2018:2960-1",{"_key":69},"SUSE-SU-2018:2961-1",{"_key":71},"SUSE-SU-2018:2962-1",{"_key":73},"SUSE-SU-2018:2963-1",{"_key":75},"SUSE-SU-2018:3029-1",{"_key":77},"SUSE-SU-2018:3083-1",{"_key":79},"SUSE-SU-2018:3084-1",{"_key":81},"SUSE-SU-2018:3088-1",{"_key":83},"SUSE-SU-2018:3961-1",{"_key":85},"USN-3776-2",{"_key":87},"USN-3847-2",{"_key":89},"USN-3847-3",{"_key":91},"RHSA-2019:3217",{"_key":93},"DLA-1529-1",{"_key":95},"DLA-1531-1",{"_key":97},"DSA-4308-1",{"_key":99},"UBUNTU-CVE-2018-10902",{"_key":101},"USN-3776-1",{"_key":103},"USN-3847-1",{"_key":105},"USN-3849-1",{"_key":107},"DEBIAN-CVE-2018-10902",{"_key":109},"RHSA-2018:3083",{"_key":111},"RHSA-2018:3096",[],[114,115,116,117,118,119,120,121,122,123,124,125,126,127,128,129,130,131,132,133,134,135,136,137,138],{"_key":31},{"_key":33},{"_key":35},{"_key":43},{"_key":45},{"_key":47},{"_key":49},{"_key":51},{"_key":53},{"_key":55},{"_key":57},{"_key":59},{"_key":61},{"_key":63},{"_key":65},{"_key":67},{"_key":69},{"_key":71},{"_key":73},{"_key":75},{"_key":77},{"_key":79},{"_key":81},{"_key":83},{"_key":139},"CGA-RFMM-9MCQ-93CH","2018-08-21T19:00:00.000Z","2024-08-05T07:54:35.823Z","Modified",{"cisa_kev":144,"cisa_ransomware":144,"cisa_vendor":9,"epss_severity":145,"epss_score":146,"severity":147,"severity_score":148,"severity_version":149,"severity_source":150,"severity_vector":151,"severity_status":142},false,"low",0.00039,"high",7.8,"v3.0","cve.org","CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",[153,161,166,170,174,180,184,191,195,199,203,209,214,219,223,227,232,236,240],{"url":154,"sources":155,"tags":157},"https://access.redhat.com/errata/RHSA-2018:3083",[150,156],"nvd",[158,159,160],"Vendor Advisory","X Refsource REDHAT","Third Party Advisory",{"url":162,"sources":163,"tags":164},"https://usn.ubuntu.com/3776-1/",[150,156],[158,165,160],"X Refsource UBUNTU",{"url":167,"sources":168,"tags":169},"https://usn.ubuntu.com/3776-2/",[150,156],[158,165,160],{"url":171,"sources":172,"tags":173},"https://usn.ubuntu.com/3847-1/",[150,156],[158,165,160],{"url":175,"sources":176,"tags":177},"https://lists.debian.org/debian-lts-announce/2018/10/msg00003.html",[150,156],[178,179,160],"Mailing List","X Refsource MLIST",{"url":181,"sources":182,"tags":183},"https://usn.ubuntu.com/3847-2/",[150,156],[158,165,160],{"url":185,"sources":186,"tags":187},"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10902",[150,156],[188,189,190,160],"X Refsource CONFIRM","Issue Tracking","Patch",{"url":192,"sources":193,"tags":194},"https://usn.ubuntu.com/3849-1/",[150,156],[158,165,160],{"url":196,"sources":197,"tags":198},"https://access.redhat.com/errata/RHSA-2019:0415",[150,156],[158,159,160],{"url":200,"sources":201,"tags":202},"https://usn.ubuntu.com/3849-2/",[150,156],[158,165,160],{"url":204,"sources":205,"tags":206},"http://www.securitytracker.com/id/1041529",[150,156],[207,208,190,160],"VDB Entry","X Refsource SECTRACK",{"url":210,"sources":211,"tags":212},"https://www.debian.org/security/2018/dsa-4308",[150,156],[158,213,160],"X Refsource DEBIAN",{"url":215,"sources":216,"tags":217},"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=39675f7a7c7e7702f7d5341f1e0d01db746543a0",[150,156],[218,190,158],"X Refsource MISC",{"url":220,"sources":221,"tags":222},"https://usn.ubuntu.com/3847-3/",[150,156],[158,165,160],{"url":224,"sources":225,"tags":226},"https://access.redhat.com/errata/RHSA-2018:3096",[150,156],[158,159,160],{"url":228,"sources":229,"tags":230},"http://www.securityfocus.com/bid/105119",[150,156],[207,231,160],"X Refsource BID",{"url":233,"sources":234,"tags":235},"https://access.redhat.com/errata/RHSA-2019:0641",[150,156],[158,159,160],{"url":237,"sources":238,"tags":239},"https://access.redhat.com/errata/RHSA-2019:3217",[150,156],[158,159],{"url":241,"sources":242,"tags":243},"https://access.redhat.com/errata/RHSA-2019:3967",[150,156],[158,159],[],{"date":246,"score":146,"percentile":247},"2026-06-03",0.11972,[249,253,256,259,262,265,268,271,275,278,281,284,287,290,293,297,300,303,306,309,312,315,318,321,324,327,330,333,336,339,342,345,348,351,354,357,360,363,366,369,372,375,378,381,384,387,390,393,395,398,401,404,407,410,412,415,418,421,424,427,430,433,435,438,441,443,446,449,452,455,458,461,464,467,470,473,476,479,482,485,488,491,494,497,500,503,505,508,511,514],{"date":250,"score":251,"percentile":252},"2025-11-04",0.00035,0.09571,{"date":254,"score":251,"percentile":255},"2025-11-05",0.09596,{"date":257,"score":251,"percentile":258},"2025-11-06",0.09715,{"date":260,"score":251,"percentile":261},"2025-11-07",0.09734,{"date":263,"score":251,"percentile":264},"2025-11-08",0.09746,{"date":266,"score":251,"percentile":267},"2025-11-09",0.09714,{"date":269,"score":251,"percentile":270},"2025-11-10",0.09675,{"date":272,"score":273,"percentile":274},"2025-11-11",0.00079,0.23988,{"date":276,"score":273,"percentile":277},"2025-11-12",0.24025,{"date":279,"score":273,"percentile":280},"2025-11-13",0.24026,{"date":282,"score":273,"percentile":283},"2025-11-14",0.24018,{"date":285,"score":273,"percentile":286},"2025-11-15",0.24003,{"date":288,"score":273,"percentile":289},"2025-11-16",0.23954,{"date":291,"score":273,"percentile":292},"2025-11-17",0.23911,{"date":294,"score":295,"percentile":296},"2025-11-18",0.0005,0.108,{"date":298,"score":295,"percentile":299},"2025-11-19",0.10819,{"date":301,"score":295,"percentile":302},"2025-11-20",0.10846,{"date":304,"score":273,"percentile":305},"2025-11-21",0.23857,{"date":307,"score":273,"percentile":308},"2025-11-22",0.23854,{"date":310,"score":273,"percentile":311},"2025-11-23",0.23808,{"date":313,"score":273,"percentile":314},"2025-11-24",0.23773,{"date":316,"score":273,"percentile":317},"2025-11-25",0.23761,{"date":319,"score":273,"percentile":320},"2025-11-26",0.23746,{"date":322,"score":273,"percentile":323},"2025-11-27",0.23745,{"date":325,"score":273,"percentile":326},"2025-11-28",0.23725,{"date":328,"score":273,"percentile":329},"2025-11-29",0.23707,{"date":331,"score":273,"percentile":332},"2025-11-30",0.237,{"date":334,"score":273,"percentile":335},"2025-12-01",0.23736,{"date":337,"score":273,"percentile":338},"2025-12-02",0.23752,{"date":340,"score":273,"percentile":341},"2025-12-03",0.23766,{"date":343,"score":273,"percentile":344},"2025-12-04",0.23692,{"date":346,"score":273,"percentile":347},"2025-12-05",0.2374,{"date":349,"score":273,"percentile":350},"2025-12-06",0.23738,{"date":352,"score":273,"percentile":353},"2025-12-07",0.23701,{"date":355,"score":273,"percentile":356},"2025-12-08",0.2371,{"date":358,"score":273,"percentile":359},"2025-12-09",0.23767,{"date":361,"score":273,"percentile":362},"2025-12-10",0.23836,{"date":364,"score":273,"percentile":365},"2025-12-11",0.23871,{"date":367,"score":273,"percentile":368},"2025-12-12",0.23887,{"date":370,"score":273,"percentile":371},"2025-12-13",0.23888,{"date":373,"score":273,"percentile":374},"2025-12-14",0.23858,{"date":376,"score":273,"percentile":377},"2025-12-15",0.23834,{"date":379,"score":273,"percentile":380},"2025-12-16",0.23855,{"date":382,"score":273,"percentile":383},"2025-12-17",0.23934,{"date":385,"score":273,"percentile":386},"2025-12-18",0.23957,{"date":388,"score":273,"percentile":389},"2025-12-19",0.23978,{"date":391,"score":273,"percentile":392},"2025-12-20",0.23947,{"date":394,"score":273,"percentile":368},"2025-12-21",{"date":396,"score":273,"percentile":397},"2025-12-22",0.23847,{"date":399,"score":273,"percentile":400},"2025-12-23",0.23825,{"date":402,"score":273,"percentile":403},"2025-12-24",0.23835,{"date":405,"score":273,"percentile":406},"2025-12-25",0.23913,{"date":408,"score":273,"percentile":409},"2025-12-26",0.23898,{"date":411,"score":273,"percentile":409},"2025-12-27",{"date":413,"score":273,"percentile":414},"2025-12-28",0.23812,{"date":416,"score":273,"percentile":417},"2025-12-29",0.2378,{"date":419,"score":273,"percentile":420},"2025-12-30",0.23768,{"date":422,"score":273,"percentile":423},"2025-12-31",0.23829,{"date":425,"score":273,"percentile":426},"2026-01-01",0.2393,{"date":428,"score":273,"percentile":429},"2026-01-02",0.23924,{"date":431,"score":273,"percentile":432},"2026-01-03",0.23903,{"date":434,"score":273,"percentile":414},"2026-01-04",{"date":436,"score":273,"percentile":437},"2026-01-05",0.2379,{"date":439,"score":273,"percentile":440},"2026-01-06",0.23796,{"date":442,"score":273,"percentile":423},"2026-01-07",{"date":444,"score":273,"percentile":445},"2026-01-08",0.23877,{"date":447,"score":273,"percentile":448},"2026-01-09",0.2386,{"date":450,"score":273,"percentile":451},"2026-01-10",0.23832,{"date":453,"score":273,"percentile":454},"2026-01-11",0.23813,{"date":456,"score":273,"percentile":457},"2026-01-12",0.23778,{"date":459,"score":273,"percentile":460},"2026-01-13",0.23755,{"date":462,"score":273,"percentile":463},"2026-01-14",0.23816,{"date":465,"score":273,"percentile":466},"2026-01-15",0.23811,{"date":468,"score":273,"percentile":469},"2026-01-16",0.23843,{"date":471,"score":273,"percentile":472},"2026-01-17",0.23839,{"date":474,"score":273,"percentile":475},"2026-01-18",0.238,{"date":477,"score":273,"percentile":478},"2026-01-19",0.23754,{"date":480,"score":273,"percentile":481},"2026-01-20",0.23722,{"date":483,"score":273,"percentile":484},"2026-01-21",0.23666,{"date":486,"score":273,"percentile":487},"2026-01-22",0.23653,{"date":489,"score":273,"percentile":490},"2026-01-23",0.23739,{"date":492,"score":273,"percentile":493},"2026-01-24",0.23751,{"date":495,"score":273,"percentile":496},"2026-01-25",0.23665,{"date":498,"score":273,"percentile":499},"2026-01-26",0.23559,{"date":501,"score":273,"percentile":502},"2026-01-27",0.23548,{"date":504,"score":273,"percentile":502},"2026-01-28",{"date":506,"score":273,"percentile":507},"2026-01-29",0.23503,{"date":509,"score":273,"percentile":510},"2026-01-30",0.235,{"date":512,"score":273,"percentile":513},"2026-01-31",0.23497,{"date":515,"score":273,"percentile":516},"2026-02-01",0.23538,[518,523],{"source":150,"cvss_v2_0":9,"cvss_v3_0":519,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":148,"baseSeverity":520,"vectorString":151,"impactScore":521,"exploitabilityScore":522},"HIGH",9.8,4.6,{"source":156,"cvss_v2_0":524,"cvss_v3_0":528,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":522,"baseSeverity":9,"vectorString":525,"impactScore":526,"exploitabilityScore":527},"AV:L/AC:L/Au:N/C:P/I:P/A:P",6.4,3.9,{"baseScore":148,"baseSeverity":520,"vectorString":151,"impactScore":521,"exploitabilityScore":522},[530,545,554,561,570,576,582],{"ecosystem":9,"name":531,"vendor":532,"product":533,"cpe_part":534,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":535},"ubuntu linux","canonical","ubuntu_linux","o",[536,539,541,543],{"version":537,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.04","cpe",{"version":540,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04",{"version":542,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":544,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"ecosystem":9,"name":546,"vendor":547,"product":548,"cpe_part":534,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":549},"debian linux","debian","debian_linux",[550,552],{"version":551,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":553,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":9,"name":555,"vendor":556,"product":557,"cpe_part":534,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":558},"linux kernel","linux","linux_kernel",[559],{"version":560,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"na",{"ecosystem":9,"name":562,"vendor":563,"product":564,"cpe_part":534,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":565},"enterprise linux desktop","redhat","enterprise_linux_desktop",[566,568],{"version":567,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.0",{"version":569,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"ecosystem":9,"name":571,"vendor":563,"product":572,"cpe_part":534,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":573},"enterprise linux server","enterprise_linux_server",[574,575],{"version":567,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":569,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":577,"vendor":563,"product":578,"cpe_part":534,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":579},"enterprise linux workstation","enterprise_linux_workstation",[580,581],{"version":567,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":569,"is_range":144,"range_type":538,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":583,"vendor":584,"product":583,"cpe_part":585,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":586},"kernel","[unknown]","a",[587],{"version":588,"is_range":144,"range_type":150,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"n/a"]