CVE-2017-7374
Published
CVSS v3
7.8
HIGH
CVSS v2
7.2
HIGH
Affected
1
PROJECT
Description
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryption, causing cryptographic transform objects to be freed prematurely.