CVE-2017-8063 REJECTED

drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash) or possibly have unspecified other impact by leveraging use of more than one virtual page for a DMA scatterlist.

EPSS 0.10% · 27.8th percentile

Risk Scores

EPSS Score
0.10%
27.8th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-azure0
Ubuntu:14.04:LTSlinux-azure0
Ubuntu:16.04:LTSlinux-gcp0
Ubuntu:16.04:LTSlinux-hwe4.8.0-39.42~16.04.1, 4.8.0-41.44~16.04.1, 4.8.0-42.45~16.04.1

Timeline

References

Open in Interactive Console →