CVE-2017-17449

MEDIUM
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAP_NET_ADMIN capability to sniff an nlmon interface for all Netlink activity on the system.

References

http://www.securityfocus.com/bid/102122

https://access.redhat.com/errata/RHSA-2018:0654

https://access.redhat.com/errata/RHSA-2018:0676

https://access.redhat.com/errata/RHSA-2018:1062

https://access.redhat.com/errata/RHSA-2018:1130

https://access.redhat.com/errata/RHSA-2018:1170

https://lkml.org/lkml/2017/12/5/950

https://source.android.com/security/bulletin/pixel/2018-04-01

https://usn.ubuntu.com/3619-1/

https://usn.ubuntu.com/3619-2/

https://usn.ubuntu.com/3653-1/

https://usn.ubuntu.com/3653-2/

https://usn.ubuntu.com/3655-1/

https://usn.ubuntu.com/3655-2/

https://usn.ubuntu.com/3657-1/

https://www.debian.org/security/2017/dsa-4073

https://www.debian.org/security/2018/dsa-4082

Details

Source: MITRE

Published: 2017-12-07

Updated: 2018-05-31

Type: CWE-200

Risk Information

CVSS v2

Base Score: 1.9

Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Impact Score: 2.9

Exploitability Score: 3.4

Severity: LOW

CVSS v3

Base Score: 4.7

Vector: CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

Impact Score: 3.6

Exploitability Score: 1

Severity: MEDIUM

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions up to 4.14.4 (inclusive)

Tenable Plugins

View all (35 total)

IDNameProductFamilySeverity
127281NewStart CGSL CORE 5.04 / MAIN 5.04 : kernel-rt Multiple Vulnerabilities (NS-SA-2019-0074)NessusNewStart CGSL Local Security Checks
critical
127272NewStart CGSL CORE 5.04 / MAIN 5.04 : kernel Multiple Vulnerabilities (NS-SA-2019-0070)NessusNewStart CGSL Local Security Checks
critical
124990EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1537)NessusHuawei Local Security Checks
high
124824EulerOS Virtualization 3.0.1.0 : kernel (EulerOS-SA-2019-1501)NessusHuawei Local Security Checks
high
110311Virtuozzo 7 : readykernel-patch (VZA-2018-038)NessusVirtuozzo Local Security Checks
medium
110052Ubuntu 17.10 : Linux kernel (Raspberry Pi 2) vulnerabilities (USN-3657-1)NessusUbuntu Local Security Checks
high
110050Ubuntu 14.04 LTS : Linux kernel vulnerabilities (USN-3655-1) (Spectre)NessusUbuntu Local Security Checks
high
110047Ubuntu 16.04 LTS : Linux kernel (HWE) vulnerabilities (USN-3653-2) (Spectre)NessusUbuntu Local Security Checks
high
110046Ubuntu 17.10 : Linux kernel vulnerabilities (USN-3653-1) (Spectre)NessusUbuntu Local Security Checks
high
109828Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4108)NessusOracle Linux Local Security Checks
high
109623Virtuozzo 7 : readykernel-patch (VZA-2018-026)NessusVirtuozzo Local Security Checks
high
109622Virtuozzo 7 : readykernel-patch (VZA-2018-025)NessusVirtuozzo Local Security Checks
high
109621Virtuozzo 7 : readykernel-patch (VZA-2018-024)NessusVirtuozzo Local Security Checks
high
109449Scientific Linux Security Update : kernel on SL7.x x86_64 (20180410) (Meltdown)NessusScientific Linux Local Security Checks
critical
109380CentOS 7 : kernel (CESA-2018:1062)NessusCentOS Local Security Checks
critical
109335RHEL 6 : MRG (RHSA-2018:1170)NessusRed Hat Local Security Checks
critical
109116RHEL 7 : kernel (RHSA-2018:1130)NessusRed Hat Local Security Checks
critical
109113Oracle Linux 7 : kernel (ELSA-2018-1062)NessusOracle Linux Local Security Checks
critical
108997RHEL 7 : kernel (RHSA-2018:1062)NessusRed Hat Local Security Checks
critical
108984RHEL 7 : kernel-rt (RHSA-2018:0676)NessusRed Hat Local Security Checks
critical
108942RHEL 7 : kernel-alt (RHSA-2018:0654)NessusRed Hat Local Security Checks
high
108878Ubuntu 14.04 LTS : linux-lts-xenial, linux-aws vulnerabilities (USN-3619-2)NessusUbuntu Local Security Checks
high
108842Ubuntu 16.04 LTS : linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities (USN-3619-1)NessusUbuntu Local Security Checks
high
106406EulerOS 2.0 SP1 : kernel (EulerOS-SA-2018-1031)NessusHuawei Local Security Checks
critical
106167EulerOS 2.0 SP2 : kernel (EulerOS-SA-2018-1026)NessusHuawei Local Security Checks
high
106095SUSE SLES12 Security Update : kernel (SUSE-SU-2018:0115-1) (Meltdown) (Spectre)NessusSuSE Local Security Checks
high
105819Fedora 27 : kernel (2017-129969aa8a)NessusFedora Local Security Checks
high
105704Debian DSA-4082-1 : linux - security update (Meltdown)NessusDebian Local Security Checks
high
105647SUSE SLES12 Security Update : kernel (SUSE-SU-2018:0031-1) (Meltdown) (Spectre)NessusSuSE Local Security Checks
high
105461SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:3410-1)NessusSuSE Local Security Checks
high
105460SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:3398-1)NessusSuSE Local Security Checks
high
105433Debian DSA-4073-1 : linux - security updateNessusDebian Local Security Checks
high
105383Fedora 26 : kernel (2017-ba6b6e71f7)NessusFedora Local Security Checks
high
105364openSUSE Security Update : the Linux Kernel (openSUSE-2017-1391) (Dirty COW)NessusSuSE Local Security Checks
high
105344openSUSE Security Update : the Linux Kernel (openSUSE-2017-1390) (Dirty COW)NessusSuSE Local Security Checks
high