Wind River Support Network

HomeDefectsSCP7-710
Fixed

SCP7-710 : Security Advisory - linux - CVE-2017-15115

Created: Nov 27, 2017    Updated: Aug 14, 2019
Resolved Date: Aug 14, 2019
Found In Version: 7.0.0.5
Fix Version: 7.0.0.27
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Kernel

Description

The sctp_do_peeloff function in net/sctp/socket.c in the Linux kernel before 4.14 does not check whether the intended netns is used in a peel-off action, which allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified other impact via crafted system calls.
Live chat
Online