CVE-2017-17857 REJECTED

The check_stack_boundary function in kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging mishandling of invalid variable stack read operations.

EPSS 0.13% · 32.6th percentile

Risk Scores

EPSS Score
0.13%
32.6th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-gcp0, 4.13.0-1019.23, 4.13.0-1017.21
Ubuntu:16.04:LTSlinux-hwe4.13.0-45.50~16.04.1, 4.10.0-30.34~16.04.1, 4.10.0-32.36~16.04.1
Ubuntu:14.04:LTSlinux-azure0
Ubuntu:16.04:LTSlinux-azure4.13.0-1016.19, 4.13.0-1014.17, 4.13.0-1012.15

Timeline

References

Open in Interactive Console →