imPC@ndo IT

Tracker / CVE-2017-14497

CVE-2017-14497

High 7.8

The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might allow local users to cause a denial of service (buffer overflow, and disk and memory corruption) or possibly have unspecified other impact via crafted system calls.

Affected products and versions

debian debian_linux
linux linux_kernel · 4.10 → 4.12.14
linux linux_kernel · 4.6 → 4.9.51

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References