Race condition in net/packet/afpacket.c in the Linux kernel before 4.9.13 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a multithreaded application that makes PACKETFANOUT setsockopt system calls.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-6346.json"
[
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 420.0,
"function_hash": "296129130738275439445359965095495888419"
},
"signature_type": "Function",
"id": "CVE-2017-6346-6417b865",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@d199fab63c11998a602205f7ee7ff7c05c97164b",
"target": {
"function": "fanout_release",
"file": "net/packet/af_packet.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"217432546773451624689682769783494039286",
"310685201758048789317952824485177075164",
"237645000165618060143829340457495720740",
"285579918600701674564208421101649508786",
"289903683180841659630715870212908783552",
"251919347827429556373846947534044490909",
"81051174020404982554806064569120348460",
"103212831122685994664679516070451722413",
"336645256495785106277161963849636340296",
"170725979022246511192792787759039129628",
"199757617057357054946884298962059078597",
"286073025369530734514208708647308436612",
"55881845551472323782480352569798339613",
"134471691069723853730975801631884319817",
"207518677845610245118004232736587448461",
"330013620003891310329004833320935372258",
"203145702801888086853040383150003355605",
"1525879172397328070809724244535157180",
"16583045200382250920897481295913772698",
"71567753852652177054510891549274458346",
"174920975831545967055274367495083800316",
"25313111854588550845159077032419654542",
"152294409319391607636449786186261368594",
"129684007462135759122549573470443628186",
"72033978623162431519646624839622277282",
"142479053084773053293177395053407428800",
"169189447587715217688682476391873821337",
"340203344941883491351212556368017698060",
"8917302369045160528770306219855142977",
"43547449135588446546511975042286730278",
"253535314495280856004850507226608306763",
"160457621487772005948432413284909550653",
"248277494479705349770509917851991709725",
"199562951914652232904934050957486533270",
"12271253806641482934079891288282704095",
"60683816529038797840825489412927326385",
"158092652450578171790724809157870758254",
"212170475352151277690735078910717383838",
"279703019281721036514720976148404135156",
"85765855957378946000005099511197066600",
"103035446966323239967765703755502368798",
"184704710693598250036951809351693727232",
"111211013883854637940479450868177913137",
"90477810083043126958906995101320516101",
"65009361879782356191129602382620512154",
"85803747737740257165260387032683440232"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2017-6346-981ca0fa",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@d199fab63c11998a602205f7ee7ff7c05c97164b",
"target": {
"file": "net/packet/af_packet.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 2325.0,
"function_hash": "279904288007245642229038720561968783578"
},
"signature_type": "Function",
"id": "CVE-2017-6346-e08ae838",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@d199fab63c11998a602205f7ee7ff7c05c97164b",
"target": {
"function": "fanout_add",
"file": "net/packet/af_packet.c"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-6346.json"
[
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"217432546773451624689682769783494039286",
"310685201758048789317952824485177075164",
"237645000165618060143829340457495720740",
"285579918600701674564208421101649508786",
"289903683180841659630715870212908783552",
"251919347827429556373846947534044490909",
"81051174020404982554806064569120348460",
"103212831122685994664679516070451722413",
"336645256495785106277161963849636340296",
"170725979022246511192792787759039129628",
"199757617057357054946884298962059078597",
"286073025369530734514208708647308436612",
"55881845551472323782480352569798339613",
"134471691069723853730975801631884319817",
"207518677845610245118004232736587448461",
"330013620003891310329004833320935372258",
"203145702801888086853040383150003355605",
"1525879172397328070809724244535157180",
"16583045200382250920897481295913772698",
"71567753852652177054510891549274458346",
"174920975831545967055274367495083800316",
"25313111854588550845159077032419654542",
"152294409319391607636449786186261368594",
"129684007462135759122549573470443628186",
"72033978623162431519646624839622277282",
"142479053084773053293177395053407428800",
"169189447587715217688682476391873821337",
"340203344941883491351212556368017698060",
"8917302369045160528770306219855142977",
"43547449135588446546511975042286730278",
"253535314495280856004850507226608306763",
"160457621487772005948432413284909550653",
"248277494479705349770509917851991709725",
"199562951914652232904934050957486533270",
"12271253806641482934079891288282704095",
"60683816529038797840825489412927326385",
"158092652450578171790724809157870758254",
"212170475352151277690735078910717383838",
"279703019281721036514720976148404135156",
"85765855957378946000005099511197066600",
"103035446966323239967765703755502368798",
"184704710693598250036951809351693727232",
"111211013883854637940479450868177913137",
"90477810083043126958906995101320516101",
"65009361879782356191129602382620512154",
"85803747737740257165260387032683440232"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2017-6346-053f2d76",
"source": "https://github.com/torvalds/linux/commit/d199fab63c11998a602205f7ee7ff7c05c97164b",
"target": {
"file": "net/packet/af_packet.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 420.0,
"function_hash": "296129130738275439445359965095495888419"
},
"signature_type": "Function",
"id": "CVE-2017-6346-4e54ba96",
"source": "https://github.com/torvalds/linux/commit/d199fab63c11998a602205f7ee7ff7c05c97164b",
"target": {
"function": "fanout_release",
"file": "net/packet/af_packet.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 2325.0,
"function_hash": "279904288007245642229038720561968783578"
},
"signature_type": "Function",
"id": "CVE-2017-6346-b34d38c0",
"source": "https://github.com/torvalds/linux/commit/d199fab63c11998a602205f7ee7ff7c05c97164b",
"target": {
"function": "fanout_add",
"file": "net/packet/af_packet.c"
}
}
]