UBUNTU-CVE-2017-17863

Source
https://ubuntu.com/security/CVE-2017-17863
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2017/UBUNTU-CVE-2017-17863.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2017-17863
Related
Published
2017-12-27T00:00:00Z
Modified
2017-12-27T00:00:00Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecified other impact.

References

Affected packages

Ubuntu:Pro:14.04:LTS / linux-lts-vivid

Package

Name
linux-lts-vivid
Purl
pkg:deb/ubuntu/linux-lts-vivid?arch=src?distro=trusty/esm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*

3.19.0-18.18~14.04.1
3.19.0-20.20~14.04.1
3.19.0-21.21~14.04.1
3.19.0-22.22~14.04.1
3.19.0-23.24~14.04.1
3.19.0-25.26~14.04.1
3.19.0-26.28~14.04.1
3.19.0-28.30~14.04.1
3.19.0-30.33~14.04.1
3.19.0-30.34~14.04.1
3.19.0-31.36~14.04.1
3.19.0-32.37~14.04.1
3.19.0-33.38~14.04.1
3.19.0-37.42~14.04.1
3.19.0-39.44~14.04.1
3.19.0-41.46~14.04.2
3.19.0-42.48~14.04.1
3.19.0-43.49~14.04.1
3.19.0-47.53~14.04.1
3.19.0-49.55~14.04.1
3.19.0-51.57~14.04.1
3.19.0-51.58~14.04.1
3.19.0-56.62~14.04.1
3.19.0-58.64~14.04.1
3.19.0-59.65~14.04.1
3.19.0-59.66~14.04.1
3.19.0-61.69~14.04.1
3.19.0-64.72~14.04.1
3.19.0-65.73~14.04.1
3.19.0-66.74~14.04.1
3.19.0-68.76~14.04.1
3.19.0-69.77~14.04.1
3.19.0-71.79~14.04.1
3.19.0-73.81~14.04.1
3.19.0-74.82~14.04.1
3.19.0-75.83~14.04.1
3.19.0-77.85~14.04.1
3.19.0-78.86~14.04.1
3.19.0-79.87~14.04.1
3.19.0-80.88~14.04.1

Ecosystem specific

{
    "ubuntu_priority": "high"
}

Ubuntu:Pro:16.04:LTS / linux-flo

Package

Name
linux-flo
Purl
pkg:deb/ubuntu/linux-flo?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*

3.4.0-5.19
3.4.0-5.22
3.4.0-5.23

Ecosystem specific

{
    "ubuntu_priority": "high"
}

Ubuntu:Pro:16.04:LTS / linux-mako

Package

Name
linux-mako
Purl
pkg:deb/ubuntu/linux-mako?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*

3.4.0-7.39
3.4.0-7.40
3.4.0-7.41
3.4.0-7.44

Ecosystem specific

{
    "ubuntu_priority": "high"
}