PT-2017-2357 · Linux+5 · Linux Kernel+5

Andrey Konovalov

·

Published

2017-02-17

·

Updated

2025-09-29

·

CVE-2017-6074

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 4.9.11
Description The issue is related to the dccp rcv state process function in the Linux kernel, which mishandles DCCP PKT REQUEST packet data structures in the LISTEN state. This can be exploited by a local user to obtain root privileges or cause a denial of service (double free) via an application that makes an IPV6 RECVPKTINFO setsockopt system call. The exploitation is due to the use of memory after it has been freed.
Recommendations For Linux kernel versions prior to 4.9.11, update to version 4.9.11 or later to resolve the issue. As a temporary workaround, consider restricting the use of the dccp rcv state process function or the IPV6 RECVPKTINFO setsockopt system call to minimize the risk of exploitation.

Exploit

Fix

DoS

Double Free

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2017-1215
ALT-PU-2017-1216
ALT-PU-2021-2870
ALT-PU-2021-2882
ALT-PU-2021-2906
ALT-PU-2021-2907
ALT-PU-2021-2912
ALT-PU-2021-2913
ALT-PU-2021-2919
ALT-PU-2021-2923
ALT-PU-2021-2938
ALT-PU-2021-2984
BDU:2017-01556
CESA-2017_0293
CESA-2017_0294
CVE-2017-6074
DLA-833-1
DSA-3791-1
ELSA-2017-0293
ELSA-2017-0294
ELSA-2017-0294-1
ELSA-2017-3520
ELSA-2017-3521
ELSA-2017-3522
ELSA-2021-9486
ELSA-2021-9487
MGASA-2017-0063
MGASA-2017-0064
MGASA-2017-0065
OPENSUSE-SU-2017_0541-1
OPENSUSE-SU-2017_0547-1
RHSA-2017:0293
RHSA-2017:0294
RHSA-2017:0295
RHSA-2017:0316
RHSA-2017:0323
RHSA-2017:0324
RHSA-2017:0345
RHSA-2017:0346
RHSA-2017:0347
RHSA-2017:0365
RHSA-2017:0366
RHSA-2017:0403
RHSA-2017:0501
RHSA-2017:0932
RHSA-2017:1209
RHSA-2017_0293
RHSA-2017_0294
RHSA-2017_0295
RHSA-2017_0323
SUSE-SU-2017:1183-1
SUSE-SU-2017:1247-1
SUSE-SU-2017:1301-1
SUSE-SU-2017:1360-1
SUSE-SU-2017:1990-1
SUSE-SU-2017:2342-1
SUSE-SU-2017:2525-1
SUSE-SU-2017_1183-1
SUSE-SU-2017_1247-1
SUSE-SU-2017_1301-1
SUSE-SU-2017_1360-1
USN-3206-1
USN-3207-1
USN-3207-2
USN-3208-1
USN-3208-2
USN-3209-1

Affected Products

Alt Linux
Centos
Linux Kernel
Red Hat
Suse
Ubuntu