CVE-2017-17856 REJECTED

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the lack of stack-pointer alignment enforcement.

EPSS 0.13% · 32.6th percentile

Risk Scores

EPSS Score
0.13%
32.6th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-azure4.13.0-1018.21, 0, 4.11.0-1009.9
Ubuntu:14.04:LTSlinux-azure0
Ubuntu:16.04:LTSlinux-hwe4.13.0-45.50~16.04.1, 4.10.0-32.36~16.04.1, 4.10.0-33.37~16.04.1
Ubuntu:16.04:LTSlinux-gcp4.10.0-1004.4, 4.10.0-1006.6, 4.10.0-1007.7

Timeline

References

Open in Interactive Console →