CVE Database
/

CVE-2017-18017

Back to search

CVE-2017-18017

Published: Jan 3, 2018

Modified: Jan 3, 2025

PUBLISHED

Description

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-4187
vendor-advisory
x_refsource_DEBIAN
USN-3583-2
vendor-advisory
x_refsource_UBUNTU
RHSA-2018:1737
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1062
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1319
vendor-advisory
x_refsource_REDHAT
USN-3583-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2018:0676
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1170
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1130
vendor-advisory
x_refsource_REDHAT
102367
vdb-entry
x_refsource_BID
SUSE-SU-2018:0834
vendor-advisory
x_refsource_SUSE
SUSE-SU-2018:0848
vendor-advisory
x_refsource_SUSE
SUSE-SU-2018:0383
vendor-advisory
x_refsource_SUSE
USN-3583-1
vendor-advisory
x_refsource_UBUNTU
SUSE-SU-2018:0555
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2018:0408
vendor-advisory
x_refsource_SUSE
SUSE-SU-2018:0986
vendor-advisory
x_refsource_SUSE
SUSE-SU-2018:0416
vendor-advisory
x_refsource_SUSE
SUSE-SU-2018:0482
vendor-advisory
x_refsource_SUSE
SUSE-SU-2018:0841
vendor-advisory
x_refsource_SUSE
USN-3583-2
vendor-advisory
x_refsource_UBUNTU
SUSE-SU-2018:0660
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now