CVE-2017-18174 PUBLISHED

In the Linux kernel before 4.7, the amd_gpio_remove function in drivers/pinctrl/pinctrl-amd.c calls the pinctrl_unregister function, leading to a double free.

EPSS 0.42% · 61.9th percentile

Risk Scores

EPSS Score
0.42%
61.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1059.63, 0, 4.4.0-1012.12
Ubuntu:16.04:LTSlinux-aws4.4.0-1001.10, 4.4.0-1047.56, 4.4.0-1044.53
Ubuntu:14.04:LTSlinux-aws4.4.0-1002.2, 4.4.0-1003.3, 0
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:20.04:LTSlinux-gke5.4.0-1094.101, 0, 5.4.0-1033.35
Ubuntu:16.04:LTSlinux-raspi24.4.0-1042.49, 4.4.0-1046.53, 4.4.0-1048.55
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1092.97+cvm1.1, 5.4.0-1091.96+cvm1.1, 5.4.0-1090.95+cvm1.1
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-137.163~14.04.1, 4.4.0-140.166~14.04.1, 4.4.0-139.165~14.04.1
Ubuntu:20.04:LTSlinux-riscv5.4.0-30.34, 5.4.0-31.35, 5.4.0-33.37
Ubuntu:16.04:LTSlinux4.4.0-121.145, 4.4.0-122.146, 4.4.0-124.148
Ubuntu:16.04:LTSlinux-kvm4.4.0-1010.15, 4.4.0-1038.44, 4.4.0-1037.43
Ubuntu:Pro:FIPS:16.04:LTSlinux-fips4.4.0-1005.5, 4.4.0-1003.3, 0
Ubuntu:22.04:LTSlinux-realtime5.15.0-1032.35, 0
Ubuntu:20.04:LTSlinux-raspi20, 5.4.0-1006.6, 5.4.0-1004.4
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:22.04:LTSlinux-riscv5.15.0-1023.27, 5.15.0-1016.18, 5.15.0-1017.19

Timeline

References

Open in Interactive Console →