Lucene search

K
cve[email protected]CVE-2017-11473
HistoryJul 20, 2017 - 4:29 a.m.

CVE-2017-11473

2017-07-2004:29:00
CWE-120
web.nvd.nist.gov
103
cve-2017-11473
buffer overflow
linux kernel
local privilege escalation
acpi table
security vulnerability

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Buffer overflow in the mp_override_legacy_irq() function in arch/x86/kernel/acpi/boot.c in the Linux kernel through 3.2 allows local users to gain privileges via a crafted ACPI table.

Affected configurations

NVD
Node
linuxlinux_kernelRange<3.2.95
OR
linuxlinux_kernelRange3.3–3.16.50
OR
linuxlinux_kernelRange3.17–3.18.63
OR
linuxlinux_kernelRange3.19–4.1.44
OR
linuxlinux_kernelRange4.2–4.4.79
OR
linuxlinux_kernelRange4.5–4.9.40
OR
linuxlinux_kernelRange4.10–4.12.4
Node
canonicalubuntu_linuxMatch14.04esm

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%