Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18017

Опубликовано: 03 янв. 2018
Источник: debian
EPSS Средний

Описание

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.11.6-1package
linuxfixed4.9.47-1stretchpackage

Примечания

  • Fixed by: https://git.kernel.org/linus/2638fd0f92d4397884fd991d8f4925cb3f081901

EPSS

Процентиль: 97%
0.37592
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.

CVSS3: 6.5
redhat
больше 7 лет назад

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.

CVSS3: 9.8
nvd
больше 7 лет назад

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.

CVSS3: 9.8
github
около 3 лет назад

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other impact by leveraging the presence of xt_TCPMSS in an iptables action.

oracle-oval
больше 6 лет назад

ELSA-2018-4268: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 97%
0.37592
Средний