The inet_csk_clone_lock function in net/ipv4/inet_connection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service (double free) or possibly have unspecified other impact by leveraging use of the accept system call.
CPE | Name | Operator | Version |
---|---|---|---|
debian_linux | eq | 8.0 | |
debian_linux | eq | 9.0 | |
linux_kernel | lt | 3.2.89 | |
linux_kernel | ge | 3.3 | |
linux_kernel | lt | 3.10.106 | |
linux_kernel | ge | 3.19 | |
linux_kernel | lt | 4.1.42 | |
linux_kernel | ge | 3.11 | |
linux_kernel | lt | 3.16.44 | |
linux_kernel | ge | 3.17 |
git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=657831ffc38e30092a2d5f03d385d710eb88b09a
www.debian.org/security/2017/dsa-3886
www.securityfocus.com/bid/98562
access.redhat.com/errata/RHSA-2017:1842
access.redhat.com/errata/RHSA-2017:2077
access.redhat.com/errata/RHSA-2017:2669
access.redhat.com/errata/RHSA-2018:1854
github.com/torvalds/linux/commit/657831ffc38e30092a2d5f03d385d710eb88b09a
source.android.com/security/bulletin/2017-09-01