UBUNTU-CVE-2017-9074
The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly have unspecified other impact via crafted socket and send system calls.
02 / AFFECTED SOFTWARE
Affected packages
115 explicit affected versions
32 explicit affected versions
54 explicit affected versions
12 explicit affected versions
10 explicit affected versions
17 explicit affected versions
30 explicit affected versions
27 explicit affected versions
26 explicit affected versions
51 explicit affected versions
6 explicit affected versions
12 explicit affected versions
1 explicit affected versions
1 explicit affected versions
23 explicit affected versions
7 explicit affected versions
7 explicit affected versions
8 explicit affected versions
7 explicit affected versions
1 explicit affected versions
61 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly have unspecified other impact via crafted socket and send system calls.
05 / REFERENCES
Further evidence
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=2423496af35d94a87156b063ea5cedffc10a70a1
- https://github.com/torvalds/linux/commit/2423496af35d94a87156b063ea5cedffc10a70a1
- https://patchwork.ozlabs.org/patch/763117/
- https://ubuntu.com/security/CVE-2017-9074
- https://ubuntu.com/security/notices/USN-3342-1
- https://ubuntu.com/security/notices/USN-3342-2
- https://ubuntu.com/security/notices/USN-3343-1
- https://ubuntu.com/security/notices/USN-3343-2
- https://ubuntu.com/security/notices/USN-3344-1
- https://ubuntu.com/security/notices/USN-3344-2
- https://ubuntu.com/security/notices/USN-3345-1
- https://ubuntu.com/security/notices/USN-3360-2
- https://www.cve.org/CVERecord?id=CVE-2017-9074