VDB

CVE-2017-18075

CVE-2017-18075 PUBLISHED

crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local user able to access the AF_ALG-based AEAD interface (CONFIG_CRYPTO_USER_API_AEAD) and pcrypt (CONFIG_CRYPTO_PCRYPT) to cause a denial of service (kfree of an incorrect pointer) or possibly have unspecified other impact by executing a crafted sequence of system calls.

EPSS 0.06% · 20.1th percentile

Risk Scores

EPSS Score
0.06%
20.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-gcp4.13.0-1011.15, 4.13.0-1019.23, 4.13.0-1013.17
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1063.66+cvm3.2, 5.4.0-1085.90+cvm1.1, *
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:22.04:LTSlinux-realtime5.15.0-1032.35, 0
Ubuntu:Pro:FIPS:16.04:LTSlinux-fips4.4.0-1003.3, 4.4.0-1005.5, 0
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-116.140~14.04.1, *, *
Ubuntu:14.04:LTSlinux-aws4.4.0-1005.5, 4.4.0-1010.10, 4.4.0-1014.14
Ubuntu:20.04:LTSlinux-gke5.4.0-1049.52, 5.4.0-1087.94, 5.4.0-1099.106
Ubuntu:16.04:LTSlinux-aws4.4.0-1035.44, 4.4.0-1016.25, 4.4.0-1013.22
Ubuntu:16.04:LTSlinux-raspi24.4.0-1029.36, 4.4.0-1027.33, 4.4.0-1023.29
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1073.78, 0, 4.4.0-1012.12
Ubuntu:20.04:LTSlinux-raspi25.3.0-1014.16, 5.3.0-1007.8, 0
Ubuntu:16.04:LTSlinux-hwe4.10.0-42.46~16.04.1, 4.10.0-40.44~16.04.1, 4.10.0-38.42~16.04.1
Ubuntu:20.04:LTSlinux-riscv0, 5.4.0-40.45, 5.4.0-39.44
Ubuntu:16.04:LTSlinux-azure4.13.0-1018.21, 0, 4.11.0-1009.9
Ubuntu:16.04:LTSlinux4.4.0-53.74, 4.4.0-63.84, 4.4.0-65.86
Ubuntu:22.04:LTSlinux-riscv5.15.0-1017.19, 5.13.0-1006.6+22.04.1, 5.13.0-1007.7+22.04.1
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:16.04:LTSlinux-kvm4.4.0-1004.9, 4.4.0-1007.12, 4.4.0-1008.13

Exploit Intelligence

Timeline

  • Jan 24, 2018 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›