CVE-2017-6001

HIGH
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes concurrent perf_event_open system calls for moving a software group into a hardware context. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-6786.

References

http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=321027c1fe77f892f4ea07846aeae08cefbbb290

http://www.debian.org/security/2017/dsa-3791

http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.7

http://www.openwall.com/lists/oss-security/2017/02/16/1

http://www.securityfocus.com/bid/96264

https://access.redhat.com/errata/RHSA-2017:1842

https://access.redhat.com/errata/RHSA-2017:2077

https://access.redhat.com/errata/RHSA-2017:2669

https://access.redhat.com/errata/RHSA-2018:1854

https://bugzilla.redhat.com/show_bug.cgi?id=1422825

https://github.com/torvalds/linux/commit/321027c1fe77f892f4ea07846aeae08cefbbb290

https://source.android.com/security/bulletin/pixel/2017-11-01

Details

Source: MITRE

Published: 2017-02-18

Updated: 2018-06-20

Type: CWE-362

Risk Information

CVSS v2

Base Score: 7.6

Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 4.9

Severity: HIGH

CVSS v3

Base Score: 7

Vector: CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 1

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions up to 4.9.6 (inclusive)

Tenable Plugins

View all (24 total)

IDNameProductFamilySeverity
127425NewStart CGSL MAIN 4.05 : kernel Multiple Vulnerabilities (NS-SA-2019-0152)NessusNewStart CGSL Local Security Checks
high
127078F5 Networks BIG-IP : Linux kernel vulnerability (K24578092)NessusF5 Networks Local Security Checks
high
124985EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1532)NessusHuawei Local Security Checks
high
124825EulerOS Virtualization 3.0.1.0 : kernel (EulerOS-SA-2019-1502)NessusHuawei Local Security Checks
high
110887Scientific Linux Security Update : kernel on SL6.x i386/x86_64 (20180619) (Spectre)NessusScientific Linux Local Security Checks
high
110701Oracle Linux 6 : kernel (ELSA-2018-1854) (Spectre)NessusOracle Linux Local Security Checks
high
110694Virtuozzo 6 : parallels-server-bm-release / vzkernel / etc (VZA-2018-041)NessusVirtuozzo Local Security Checks
high
110645CentOS 6 : kernel (CESA-2018:1854) (Spectre)NessusCentOS Local Security Checks
critical
110600RHEL 6 : kernel (RHSA-2018:1854) (Spectre)NessusRed Hat Local Security Checks
high
103046RHEL 6 : MRG (RHSA-2017:2669)NessusRed Hat Local Security Checks
high
102734CentOS 7 : kernel (CESA-2017:1842) (Stack Clash)NessusCentOS Local Security Checks
high
102645Scientific Linux Security Update : kernel on SL7.x x86_64 (20170801)NessusScientific Linux Local Security Checks
high
102511Oracle Linux 7 : kernel (ELSA-2017-1842-1) (Stack Clash)NessusOracle Linux Local Security Checks
critical
102281Oracle Linux 7 : kernel (ELSA-2017-1842) (Stack Clash)NessusOracle Linux Local Security Checks
high
102151RHEL 7 : kernel-rt (RHSA-2017:2077)NessusRed Hat Local Security Checks
high
102143RHEL 7 : kernel (RHSA-2017:1842) (Stack Clash)NessusRed Hat Local Security Checks
high
101929Ubuntu 16.04 LTS : linux-hwe vulnerabilities (USN-3361-1)NessusUbuntu Local Security Checks
critical
100665Ubuntu 14.04 LTS : linux-lts-xenial vulnerabilities (USN-3312-2)NessusUbuntu Local Security Checks
critical
100664Ubuntu 16.04 LTS : linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities (USN-3312-1)NessusUbuntu Local Security Checks
critical
99901EulerOS 2.0 SP2 : kernel (EulerOS-SA-2017-1056)NessusHuawei Local Security Checks
high
99162OracleVM 3.4 : Unbreakable / etc (OVMSA-2017-0056)NessusOracleVM Local Security Checks
critical
99159Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3533)NessusOracle Linux Local Security Checks
critical
97357Debian DSA-3791-1 : linux - security updateNessusDebian Local Security Checks
critical
97332Debian DLA-833-1 : linux security updateNessusDebian Local Security Checks
high