Lucene search

K
redhatcveRedhat.comRH:CVE-2017-5669
HistoryFeb 27, 2017 - 4:48 p.m.

CVE-2017-5669

2017-02-2716:48:29
redhat.com
access.redhat.com
14

0.0004 Low

EPSS

Percentile

5.1%

The do_shmat function in ipc/shm.c in the Linux kernel, through 4.9.12, does not restrict the address calculated by a certain rounding operation. This allows privileged local users to map page zero and, consequently, bypass a protection mechanism that exists for the mmap system call. This is possible by making crafted shmget and shmat system calls in a privileged context.