FlawAtlas
Search the atlas
UBUNTU-CVE-2017-17863 High

UBUNTU-CVE-2017-17863

kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecified other impact.

Exploit probability Not scored
Published December 27, 2017
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:Pro:16.04:LTS linux-flo

3 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-mako

4 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

related USN-3523-1
related USN-3523-3

04 / EVIDENCE

Source records

Open Source Vulnerabilities UBUNTU-CVE-2017-17863

kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecified other impact.

View original source

05 / REFERENCES

Further evidence