CVE-2017-11600 PUBLISHED

net/xfrm/xfrm_policy.c in the Linux kernel through 4.12.3, when CONFIG_XFRM_MIGRATE is enabled, does not ensure that the dir value of xfrm_userpolicy_id is XFRM_POLICY_MAX or less, which allows local users to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via an XFRM_MSG_MIGRATE xfrm Netlink message.

EPSS 0.07% · 22.2th percentile

Risk Scores

EPSS Score
0.07%
22.2th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1085.90+cvm1.1, 5.4.0-1085.90+cvm2.1, 5.4.0-1086.91+cvm1.1
Ubuntu:20.04:LTSlinux-raspi20, 5.3.0-1007.8, 5.3.0-1014.16
Ubuntu:20.04:LTSlinux-gke5.4.0-1044.46, 5.4.0-1046.48, 5.4.0-1049.52
Ubuntu:20.04:LTSlinux-riscv0, 5.4.0-24.28, 5.4.0-26.30
Ubuntu:16.04:LTSlinux-azure4.11.0-1011.11, 4.11.0-1016.16, 4.11.0-1015.15
Ubuntu:16.04:LTSlinux-gcp0, 4.10.0-1009.9, 4.10.0-1008.8
Ubuntu:22.04:LTSlinux-realtime5.15.0-1032.35, 0
Ubuntu:16.04:LTSlinux-hwe4.8.0-45.48~16.04.1, 4.8.0-56.61~16.04.1, 4.8.0-54.57~16.04.1
Ubuntu:22.04:LTSlinux-riscv5.13.0-1006.6+22.04.1, 5.13.0-1007.7+22.04.1, 5.13.0-1010.11+22.04.1

Timeline

References

Open in Interactive Console →