PT-2017-3828 · Linux+1 · Linux+1

Chrissalls5

·

Publicado

2017-10-09

·

Atualizado

2025-09-29

·

CVE-2017-5123

CVSS v3.1

8.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux (affected versions not specified)
Description The issue is related to insufficient data validation in the waitid function of the Linux kernel, which can allow an attacker to escape sandboxes and potentially elevate their privileges. This is due to the lack of proper error state checking.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025_16880
ALT-PU-2017-2434
BDU:2019-03748
CVE-2017-5123
OPENSUSE-SU-2024:10728-1
OPENSUSE-SU-2024:13704-1

Produtos afetados

Alt Linux
Linux