Out-of-bounds read in Linux kernel - CVE-2017-9074
Published: June 29, 2017 / Updated: July 3, 2017
Vulnerability identifier: #VU7245
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-9074
CWE-ID: CWE-125
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local attacker to cause DoS condition on the target system.
The weakness exists due to the the failure to consider that the nexthdr field may be associated with an invalid option by the IPv6 fragmentation implementation. A local attacker can use a specially-crafted socket or system call to trigger out-of-bounds read and cause the system to crash.
Successful exploitation of the vulnerability results in denial of service.
The weakness exists due to the the failure to consider that the nexthdr field may be associated with an invalid option by the IPv6 fragmentation implementation. A local attacker can use a specially-crafted socket or system call to trigger out-of-bounds read and cause the system to crash.
Successful exploitation of the vulnerability results in denial of service.
Affected software
Linux kernel
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
SUSE Linux
Ubuntu
Fedora
kernel (Red Hat package)
kernel
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
SUSE Linux
Ubuntu
Fedora
kernel (Red Hat package)
kernel
How to mitigate CVE-2017-9074
Update to version 4.11.2.
kernel (Red Hat package) - update to 2.6.32-696.20.1.el6
kernel - addressed in versions 4.10.17-100.fc24, 4.10.17-200.fc25, 4.11.2-300.fc26, 4.11.3-101.fc24, 4.11.3-200.fc25, 4.11.4-100.fc24
kernel - addressed in versions 4.10.17-100.fc24, 4.10.17-200.fc25, 4.11.2-300.fc26, 4.11.3-101.fc24, 4.11.3-200.fc25, 4.11.4-100.fc24
External References
Related Security Bulletins
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel (Trusty HWE)
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel (Xenial HWE)
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel (HWE)
- Ubuntu update for Linux kernel (Xenial HWE)
- Ubuntu update for Linux kernel (HWE)
- Ubuntu update for Linux kernel (Raspberry Pi 2)
- Ubuntu update for Linux kernel (AWS)
- Ubuntu update for Linux kernel (Qualcomm Snapdragon)
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel (Raspberry Pi 2)
- Ubuntu update for Linux kernel
- Ubuntu update for Linux kernel (Raspberry Pi 2)
- Ubuntu update for Linux kernel
- OpenSUSE Linux update for the Linux Kernel
- Ubuntu update for Linux kernel
- Red Hat update for kernel
- SUSE Linux update for the Linux Kernel
- Fedora 25 update for kernel
- Fedora 24 update for kernel
- Fedora 26 update for kernel
- Fedora 25 update for kernel
- Fedora 24 update for kernel
- Fedora 24 update for kernel