Back to search
CVE-2017-14497
Published: Sep 15, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might allow local users to cause a denial of service (buffer overflow, and disk and memory corruption) or possibly have unspecified other impact via crafted system calls.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://marc.info/?l=linux-kernel&m=150394500728906&w=2
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=1492593
x_refsource_CONFIRM
[oss-security] 20170918 CVE-2017-14497: Linux kernel: packet: buffer overflow in tpacket_rcv()
mailing-list
x_refsource_MLIST
1039371
vdb-entry
x_refsource_SECTRACK
100871
vdb-entry
x_refsource_BID
https://source.android.com/security/bulletin/2018-01-01
x_refsource_CONFIRM
DSA-3981
vendor-advisory
x_refsource_DEBIAN
https://marc.info/?t=150394517700001&r=1&w=2
x_refsource_CONFIRM
1040106
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now