vendor:
Linux Kernel
by:
Wang Chenyu (Nanyang Technological University)
5,5
CVSS
MEDIUM
Denial of Service
400
CWE
Product Name: Linux Kernel
Affected Version From: Linux kernel 4-14-rc1
Affected Version To: Linux kernel 4-14-rc3
Patch Exists: YES
Related CWE: CVE-2017-14489
CPE: o:linux:linux_kernel
Metasploit:
https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2017-14489/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp1-cve-2017-14489/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2017-14489/, https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2017-14489/, https://www.rapid7.com/db/vulnerabilities/debian-cve-2017-14489/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Ubuntu 16.04 desktop amd64
2017
Linux Kernel<4.14.rc3 Local Denial of Service
This CVE is assigned to Wang Chunyu (Red Hat) and discovered by Syzkaller. In this POC, skb_shinfo(SKB)->nr_frags was overwritten by ev->iferror = err (0xff) in the condition where nlh->nlmsg_len==0x10 and skb->len > nlh->nlmsg_len.
Mitigation:
Apply the latest security patches to the Linux kernel.