Memory corruption in Linux kernel - CVE-2017-16995
Published: December 26, 2017 / Updated: June 17, 2021
Vulnerability identifier: #VU9753
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-16995
CWE-ID: CWE-119
Exploitation vector: Local access
Exploit availability:
Public exploit is available
Vulnerability details
The vulnerability allows a local attacker to cause DoS condition or execute arbitrary code on the target system.
The weakness exists in the check_alu_op function due to boundary error. A local attacker can trigger memory corruption, cause the service to crash or execute arbitrary code.
Successful exploitation of the vulnerability may result in system compromise.
The weakness exists in the check_alu_op function due to boundary error. A local attacker can trigger memory corruption, cause the service to crash or execute arbitrary code.
Successful exploitation of the vulnerability may result in system compromise.
Affected software
Linux kernel
Arch Linux
Ubuntu
Arch Linux
Ubuntu
How to mitigate CVE-2017-16995
Update to version 4.14.9.
Links to Public Exploits and PoC-codes
- Exploit #6344 - Linux - BPF Sign Extension Local Privilege Escalation (Metasploit) (June 17, 2021)
- Exploit #6346 - Linux Kernel < 4.13.9 (Ubuntu 16.04/Fedora 27) - Local Privilege Escalation (June 17, 2021)
- Exploit #5167 - kernel-exploit-factory (Linux kernel CVE exploit analysis report and relative debug environment. You don't need to compile Linux kernel and configure your environment anymore. ) (February 23, 2021)
- Exploit #5095 - CVE-2017-16995 (?CVE-2017-16995) (January 28, 2021)
- Exploit #2387 - CVE-Exploit-Script () (April 7, 2020)
- Exploit #173 - CVE-2017-16995 (Exploit adapted for a specific PoC on Ubuntu 16.04.01) (March 18, 2020)
- Exploit #1815 - Linux BPF Sign Extension Local Privilege Escalation (March 18, 2020)