VDB

CVE-2017-18344

CVE-2017-18344 PUBLISHED

The timer_create syscall implementation in kernel/time/posix-timers.c in the Linux kernel before 4.14.8 doesn't properly validate the sigevent->sigev_notify field, which leads to out-of-bounds access in the show_timer function (called when /proc/$PID/timers is read). This allows userspace applications to read arbitrary kernel memory (on a kernel built with CONFIG_POSIX_TIMERS and CONFIG_CHECKPOINT_RESTORE).

EPSS 12.86% · 94.2th percentile

Risk Scores

EPSS Score
12.86%
94.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-hwe4.10.0-33.37~16.04.1, 4.13.0-36.40~16.04.1, *
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1089.94+cvm1.2, 5.4.0-1085.90+cvm2.1, 5.4.0-1085.90+cvm1.1
Ubuntu:22.04:LTSlinux-riscv5.15.0-1028.32, 0, 5.13.0-1006.6+22.04.1
Ubuntu:22.04:LTSlinux-realtime0, 5.15.0-1032.35
Ubuntu:20.04:LTSlinux-raspi20, 5.3.0-1017.19, 5.4.0-1004.4
Ubuntu:16.04:LTSlinux-kvm0, 4.4.0-1007.12, 4.4.0-1008.13
Ubuntu:14.04:LTSlinux3.13.0-121.170, 3.13.0-123.172, 3.13.0-125.174
Ubuntu:16.04:LTSlinux-azure0, 4.11.0-1009.9, 4.11.0-1014.14
Ubuntu:16.04:LTSlinux-aws4.4.0-1031.40, 4.4.0-1030.39, 4.4.0-1028.37
Ubuntu:16.04:LTSlinux-gcp4.13.0-1012.16, 0, 4.10.0-1004.4
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-103.126~14.04.1, 4.4.0-111.134~14.04.1, 4.4.0-104.127~14.04.1
Ubuntu:24.04:LTSlinux-raspi-realtime6.8.0-2019.20, 0
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:Pro:FIPS:16.04:LTSlinux-fips4.4.0-1005.5, 4.4.0-1006.6, 4.4.0-1003.3
Ubuntu:16.04:LTSlinux4.4.0-53.74, 4.4.0-119.143, 4.4.0-42.62
Ubuntu:20.04:LTSlinux-gke5.4.0-1102.109, 5.4.0-1086.93, 5.4.0-1087.94
Ubuntu:20.04:LTSlinux-riscv5.4.0-26.30, 0, 5.4.0-24.28
Ubuntu:16.04:LTSlinux-raspi24.4.0-1050.57, 4.4.0-1052.59, 4.4.0-1051.58
Ubuntu:16.04:LTSlinux-euclid4.4.0-9023.24, 4.4.0-9022.23, 0
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1079.84, 4.4.0-1063.68, 4.4.0-1059.63

…and 1 more

Exploit Intelligence

…and 7 more exploits

Timeline

  • Jul 26, 2018 CVE Published
  • Aug 9, 2018 PoC Published
  • Apr 14, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • May 13, 2023 EPSS Score
  • Sep 15, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›