VDB
RHSA-2017%3A0403
RHSA-2017%3A0403
PUBLISHED
CVSS 7.800000190734863 HIGH
Red Hat Security Advisory: kernel security update
Risk Scores
CVSS 3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat:rhel_eus:7.1::computenode | perf | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | perf-debuginfo | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | kernel-debuginfo-common-s390x | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | kernel-debug | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-doc | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | kernel-bootwrapper | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | kernel-tools-libs-devel | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | kernel-devel | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-kdump-devel | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-tools | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-debuginfo-common-ppc64 | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-kdump | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-devel | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-debug | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-debug-debuginfo | 0, 0 |
| Red Hat:rhel_eus:7.1::computenode | python-perf | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-debuginfo-common-ppc64le | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-tools-libs | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-debuginfo | 0, 0 |
| Red Hat:rhel_eus:7.1::server | kernel-kdump-debuginfo | 0, 0 |
…and 29 more
Exploit Intelligence
- BimsaraMalinda/Linux-Kernel-4.4.0-Ubuntu---DCCP-Double-Free-Privilege-Escalation-CVE-2017-6074 (github-poc-repo)
- BimsaraMalinda/Linux-Kernel-4.4.0-Ubuntu---DCCP-Double-Free-Privilege-Escalation-CVE-2017-6074 (github-poc-repo)
- toanthang1842002/CVE-2017-6074 (github-poc-repo)
- toanthang1842002/CVE-2017-6074 (github-poc-repo)
- This repository provides a modified version of the original CVE-2017-6074 exploit (use-after-free in the Linux kernel DCCP subsystem), designed only to demonstrate Denial of Service (DoS) impact. An authenticated local user can trigger a kernel panic, causing a total loss of system availability. (github-poc-repo)
- This repository provides a modified version of the original CVE-2017-6074 exploit (use-after-free in the Linux kernel DCCP subsystem), designed only to demonstrate Denial of Service (DoS) impact. An authenticated local user can trigger a kernel panic, causing a total loss of system availability. (github-poc-repo)
- This repository provides a modified version of the original CVE-2017-6074 exploit (use-after-free in the Linux kernel DCCP subsystem), designed only to demonstrate Denial of Service (DoS) impact. An authenticated local user can trigger a kernel panic, causing a total loss of system availability. (github-poc)
- This repository provides a modified version of the original CVE-2017-6074 exploit (use-after-free in the Linux kernel DCCP subsystem), designed only to demonstrate Denial of Service (DoS) impact. An authenticated local user can trigger a kernel panic, causing a total loss of system availability. (github-poc)
- toanthang1842002/CVE-2017-6074 (github-poc)
- toanthang1842002/CVE-2017-6074 (github-poc)
…and 2 more exploits
Timeline
- Mar 2, 2017 CVE Published
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- May 13, 2026 CVE Updated
References
- https://access.redhat.com/errata/RHSA-2017:0403 advisory
- https://access.redhat.com/security/updates/classification/#important article
- https://access.redhat.com/articles/2039563 article
- https://bugzilla.redhat.com/show_bug.cgi?id=1423071 report
- https://security.access.redhat.com/data/csaf/v2/advisories/2017/rhsa-2017_0403.json advisory
- https://access.redhat.com/security/cve/CVE-2017-6074 report
- https://www.cve.org/CVERecord?id=CVE-2017-6074 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2017-6074 advisory
- https://access.redhat.com/node/2934281 article