CVE-2017-16912

MEDIUM
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The "get_pipe()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 allows attackers to cause a denial of service (out-of-bounds read) via a specially crafted USB over IP packet.

References

http://www.securityfocus.com/bid/102150

https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.8

https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.114

https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.71

https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux-stable.git/commit/drivers/usb/usbip?id=635f545a7e8be7596b9b2b6a43cab6bbd5a88e43

https://lists.debian.org/debian-lts-announce/2018/05/msg00000.html

https://secuniaresearch.flexerasoftware.com/advisories/77000/

https://secuniaresearch.flexerasoftware.com/secunia_research/2017-21/

https://usn.ubuntu.com/3619-1/

https://usn.ubuntu.com/3619-2/

https://usn.ubuntu.com/3754-1/

https://www.debian.org/security/2018/dsa-4187

https://www.spinics.net/lists/linux-usb/msg163480.html

Details

Source: MITRE

Published: 2018-01-31

Updated: 2018-08-24

Type: CWE-125

Risk Information

CVSS v2

Base Score: 7.1

Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Impact Score: 6.9

Exploitability Score: 8.6

Severity: HIGH

CVSS v3

Base Score: 5.9

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Impact Score: 3.6

Exploitability Score: 2.2

Severity: MEDIUM

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions from 4.4.0 to 4.4.107 (inclusive)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions from 4.9.0 to 4.9.71 (inclusive)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions from 4.14.0 to 4.14.8 (inclusive)

Tenable Plugins

View all (12 total)

IDNameProductFamilySeverity
112113Ubuntu 14.04 LTS : Linux kernel vulnerabilities (USN-3754-1)NessusUbuntu Local Security Checks
critical
109646SUSE SLES11 Security Update : kernel (SUSE-SU-2018:1172-1)NessusSuSE Local Security Checks
high
109531Debian DLA-1369-1 : linux security update (Spectre)NessusDebian Local Security Checks
critical
109517Debian DSA-4187-1 : linux - security update (Spectre)NessusDebian Local Security Checks
critical
109360SUSE SLES11 Security Update : kernel (SUSE-SU-2018:1080-1) (Spectre)NessusSuSE Local Security Checks
high
108878Ubuntu 14.04 LTS : linux-lts-xenial, linux-aws vulnerabilities (USN-3619-2)NessusUbuntu Local Security Checks
high
108842Ubuntu 16.04 LTS : linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities (USN-3619-1)NessusUbuntu Local Security Checks
high
108748SUSE SLES12 Security Update : kernel (SUSE-SU-2018:0848-1)NessusSuSE Local Security Checks
critical
108705SUSE SLES12 Security Update : kernel (SUSE-SU-2018:0834-1)NessusSuSE Local Security Checks
critical
108649SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2018:0786-1)NessusSuSE Local Security Checks
critical
108648SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2018:0785-1)NessusSuSE Local Security Checks
high
108577openSUSE Security Update : the Linux Kernel (openSUSE-2018-292)NessusSuSE Local Security Checks
critical