UBUNTU-CVE-2017-7533
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-7533
UBUNTU-CVE-2017-7533
Summary:
Details: Race condition in the fsnotify implementation in the Linux kernel through 4.12.4 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted application that leverages simultaneous execution of the inotify_handle_event and vfs_rename functions.
References: https://ubuntu.com/security/CVE-2017-7533, http://openwall.com/lists/oss-security/2017/08/03/2, https://ubuntu.com/security/notices/USN-3377-1, https://ubuntu.com/security/notices/USN-3377-2, https://ubuntu.com/security/notices/USN-3378-1, https://ubuntu.com/security/notices/USN-3378-2, https://source.android.com/security/bulletin/2017-12-01, https://www.cve.org/CVERecord?id=CVE-2017-7533
Affected packages
Package
Name: linux-lts-xenial
Purl: pkg:deb/ubuntu/[email protected]~14.04.1?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
