CVE-2017-0357
Published
CVSS v3
N/A
CVSS v2
7.5
HIGH
Affected
1
PROJECT
Description
A heap-overflow flaw exists in the -tr loader of iucode-tool starting with v1.4 and before v2.1.1, potentially leading to SIGSEGV, or heap corruption.
iucode_tool is a program to manipulate microcode update collections for Intel® i686 and X86-64 system processors, and prepare them for use by the Linux kernel. Please refer to the project wiki for documentation and more details.