CVE-2017-17853 REJECTED

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging incorrect BPF_RSH signed bounds calculations.

EPSS 0.13% · 32.6th percentile

Risk Scores

EPSS Score
0.13%
32.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-azure0
Ubuntu:16.04:LTSlinux-gcp4.10.0-1006.6, 0, 4.10.0-1004.4
Ubuntu:16.04:LTSlinux-azure4.11.0-1013.13, 4.11.0-1014.14, 4.11.0-1015.15
Ubuntu:16.04:LTSlinux-hwe4.13.0-41.46~16.04.1, 4.13.0-43.48~16.04.1, 4.13.0-45.50~16.04.1

Timeline

References

Open in Interactive Console →