UBUNTU-CVE-2017-17863
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-17863
UBUNTU-CVE-2017-17863
Summary:
Details: kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecified other impact.
References: https://ubuntu.com/security/CVE-2017-17863, http://www.openwall.com/lists/oss-security/2017/12/24/1, https://www.spinics.net/lists/stable/msg206985.html, https://ubuntu.com/security/notices/USN-3523-1, https://ubuntu.com/security/notices/USN-3523-2, https://ubuntu.com/security/notices/USN-3523-3, https://www.cve.org/CVERecord?id=CVE-2017-17863
Affected packages
Package
Name: linux-flo
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=esm-apps/xenial
Affected ranges
Type: ECOSYSTEM
Events:
