UBUNTU-CVE-2017-18255
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-18255
UBUNTU-CVE-2017-18255
Summary:
Details: The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow) or possibly have unspecified other impact via a large value, as demonstrated by an incorrect sample-rate calculation.
References: https://ubuntu.com/security/CVE-2017-18255, http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=1572e45a924f254d9570093abde46430c3172e3d, https://github.com/torvalds/linux/commit/1572e45a924f254d9570093abde46430c3172e3d, https://ubuntu.com/security/notices/USN-3696-1, https://ubuntu.com/security/notices/USN-3696-2, https://ubuntu.com/security/notices/USN-3754-1, https://www.cve.org/CVERecord?id=CVE-2017-18255
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
