UBUNTU-CVE-2017-12762
In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied into a local buffer of constant size using strcpy without a length check which can cause a buffer overflow. This affects the Linux kernel 4.9-stable tree, 4.12-stable tree, 3.18-stable tree, and 4.4-stable tree.
02 / AFFECTED SOFTWARE
Affected packages
128 explicit affected versions
38 explicit affected versions
60 explicit affected versions
18 explicit affected versions
6 explicit affected versions
5 explicit affected versions
16 explicit affected versions
26 explicit affected versions
36 explicit affected versions
33 explicit affected versions
26 explicit affected versions
51 explicit affected versions
6 explicit affected versions
12 explicit affected versions
1 explicit affected versions
1 explicit affected versions
23 explicit affected versions
7 explicit affected versions
7 explicit affected versions
8 explicit affected versions
7 explicit affected versions
1 explicit affected versions
61 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied into a local buffer of constant size using strcpy without a length check which can cause a buffer overflow. This affects the Linux kernel 4.9-stable tree, 4.12-stable tree, 3.18-stable tree, and 4.4-stable tree.
05 / REFERENCES
Further evidence
- http://seclists.org/oss-sec/2017/q3/274
- https://patchwork.kernel.org/patch/9880041/
- https://ubuntu.com/security/CVE-2017-12762
- https://ubuntu.com/security/notices/USN-3420-1
- https://ubuntu.com/security/notices/USN-3420-2
- https://ubuntu.com/security/notices/USN-3620-1
- https://ubuntu.com/security/notices/USN-3620-2
- https://www.cve.org/CVERecord?id=CVE-2017-12762