Back to search
CVE-2014-9914
Published: Feb 7, 2017
Modified: Aug 6, 2024
PUBLISHED
Description
Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging incorrect expectations about locking during multithreaded access to internal data structures for IPv4 UDP sockets.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1037798
vdb-entry
x_refsource_SECTRACK
http://source.android.com/security/bulletin/2017-02-01.html
x_refsource_CONFIRM
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.15.2
x_refsource_CONFIRM
96100
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now