Vulnerability identifier: #VU5869
Vulnerability risk: Low
CVSSv3.1:
CVE-ID:
CWE-ID:
CWE-399
Exploitation vector: Local
Exploit availability: Yes
Vulnerable software:
Linux kernel
Operating systems & Components /
Operating system
Vendor: Linux Foundation
Description
The vulnerability allows a local user to cause kernel panic.
The vulnerability exists due to invalid free in the dccp_rcv_state_process() function in net/dccp/input.c file in the Linux kernel through 4.9.11 when processing DCCP_PKT_REQUEST packet data structures in the LISTEN state. A local user can use userspace application to make an IPV6_RECVPKTINFO setsockopt system call and cause kernel panic.
Successful exploitation of this vulnerability may result in denial of service condition.
Mitigation
Install patch from GIT repository.
Vulnerable software versions
Linux kernel: 4.1.1 - 4.9.11
CPE
External links
http://github.com/torvalds/linux/commit/5edabca9d4cff7f1f2b68f0bac55ef99d9798ba4
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?