The inetcskclonelock function in net/ipv4/inetconnection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service (double free) or possibly have unspecified other impact by leveraging use of the accept system call.
{ "urgency": "not yet assigned" }