Security restrictions bypass in Linux kernel - CVE-2017-1000371

 

Security restrictions bypass in Linux kernel - CVE-2017-1000371

Published: August 23, 2017 / Updated: September 14, 2018


Vulnerability identifier: #VU8002
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-1000371
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability: Public exploit is available

Vulnerability details

The vulnerability allows a local attacker to bypass security restrictions on the target system.

The weakness exists due to a flaw in offset2lib patch. A local attacker can send a specially-crafted request, bypass security restrictions and gain full access to the system.

Affected software

Linux kernel
Amazon Linux AMI
CentOS
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Server
Fedora
kernel (Red Hat package)
kernel
Juniper Junos Space

How to mitigate CVE-2017-1000371

Update to version 4.11.6.

kernel (Red Hat package) - update to 2.6.32-754.29.1.el6
kernel - addressed in versions 4.11.6-100.fc24, 4.11.6-101.fc24, 4.11.6-200.fc25, 4.11.6-201.fc25, 4.11.6-300.fc26, 4.11.6-301.fc26
Juniper Junos Space - update to 20.3R1

Links to Public Exploits and PoC-codes

External References

Related Security Bulletins