CVE-2017-17712

Published
View on NVD ↗
CVSS v3
7
HIGH
CVSS v2
6.9
MEDIUM
Affected
1
PROJECT

Description

The raw_sendmsg() function in net/ipv4/raw.c in the Linux kernel through 4.14.6 has a race condition in inet->hdrincl that leads to uninitialized stack pointer usage; this allows a local user to execute code and gain privileges.

Linux kernel source tree
GitHubGitHub
237K