Lucene search

K
cvelistMitreCVELIST:CVE-2017-9074
HistoryMay 19, 2017 - 6:25 a.m.

CVE-2017-9074

2017-05-1906:25:00
mitre
www.cve.org
1

8 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly have unspecified other impact via crafted socket and send system calls.