Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-11600
HistoryJul 24, 2017 - 7:29 a.m.

Out-of-bounds

2017-07-2407:29:00
PRIOn knowledge base
www.prio-n.com
10

7.1 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

net/xfrm/xfrm_policy.c in the Linux kernel through 4.12.3, when CONFIG_XFRM_MIGRATE is enabled, does not ensure that the dir value of xfrm_userpolicy_id is XFRM_POLICY_MAX or less, which allows local users to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via an XFRM_MSG_MIGRATE xfrm Netlink message.