PT-2017-3733 · Linux+3 · Linux Kernel+3

Stefano Brivio

·

Published

2017-08-23

·

Updated

2023-02-12

·

CVE-2017-7558

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Linux kernel versions 4.7-rc1 through 4.13
Description: A kernel data leak was found due to an out-of-bound read in the Linux kernel. This issue affects the inet diag msg sctp{,l}addr fill() and sctp get sctp info() functions, where a data leak occurs when filling in sockaddr data structures used for exporting socket's diagnostic information. As a result, up to 100 bytes of slab data could be leaked to userspace. The vulnerability can be exploited by a local attacker to cause a memory leak.
Recommendations: For Linux kernel versions 4.7-rc1 through 4.13, consider disabling the inet diag msg sctp{,l}addr fill() and sctp get sctp info() functions as a temporary workaround until a patch is available. Restrict access to the vulnerable functions to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2017-2206
ALT-PU-2018-1991
BDU:2019-00221
CESA-2017_2930
CVE-2017-7558
DSA-3981-1
MGASA-2017-0381
MGASA-2017-0383
MGASA-2017-0384
RHSA-2017:2918
RHSA-2017:2930
RHSA-2017:2931
RHSA-2017_2930
RHSA-2017_2931

Affected Products

Alt Linux
Centos
Linux Kernel
Red Hat