VDB

DEBIAN-CVE-2017-16994

DEBIAN-CVE-2017-16994 PUBLISHED CVSS 5.5 MEDIUM

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

Risk Scores

CVSS 3.0
5.5
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Debian:13linux0, 0, 0
Debian:14linux0, 0, 0
Debian:12linux0, 0, 0
Debian:11linux0, 0, 0

Exploit Intelligence

Timeline

  • Nov 27, 2017 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›