PT-2017-3828 · Linux+1 · Linux+1

Chrissalls5

·

Published

2017-10-09

·

Updated

2025-09-29

·

CVE-2017-5123

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux (affected versions not specified)
Description The issue is related to insufficient data validation in the waitid function of the Linux kernel, which can allow an attacker to escape sandboxes and potentially elevate their privileges. This is due to the lack of proper error state checking.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2017-2434
BDU:2019-03748
CVE-2017-5123
OPENSUSE-SU-2024:10728-1
OPENSUSE-SU-2024:13704-1

Affected Products

Alt Linux
Linux