Privilege escalation in Linux kernel - CVE-2017-7518
Published: June 26, 2017 / Updated: November 21, 2017
Vulnerability identifier: #VU7206
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2017-7518
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vendor: Linux Foundation
Affected software:
Linux kernel
Linux kernel
Detailed vulnerability description
The vulnerability allows an local attacker to gain elevated privileges on the guest system.
The weakness exists due to debug exception error in syscall emulation. A attacker can gain system privileges.
Successful exploitation of the vulnerability results in privilege escalation.
How to mitigate CVE-2017-7518
Install update from vendor's website.