CVE-2017-7482

HIGH
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

In the Linux kernel before version 4.12, Kerberos 5 tickets decoded when using the RXRPC keys incorrectly assumes the size of a field. This could lead to the size-remaining variable wrapping and the data pointer going over the end of the buffer. This could possibly lead to memory corruption and possible privilege escalation.

References

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=5f2f97656ada8d811d3c1bef503ced266fcd53a0

https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7482

http://seclists.org/oss-sec/2017/q2/602

https://www.debian.org/security/2017/dsa-3945

https://www.debian.org/security/2017/dsa-3927

http://www.securitytracker.com/id/1038787

http://www.securityfocus.com/bid/99299

https://access.redhat.com/errata/RHSA-2019:0641

Details

Source: MITRE

Published: 2018-07-30

Updated: 2019-10-09

Type: CWE-190

Risk Information

CVSS v2

Base Score: 7.2

Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 3.9

Severity: HIGH

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 1.8

Severity: HIGH

Tenable Plugins

View all (37 total)

IDNameProductFamilySeverity
149098EulerOS 2.0 SP3 : kernel (EulerOS-SA-2021-1808)NessusHuawei Local Security Checks
high
131805EulerOS 2.0 SP5 : kernel (EulerOS-SA-2019-2531)NessusHuawei Local Security Checks
high
124981EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1528)NessusHuawei Local Security Checks
high
123432RHEL 6 : MRG (RHSA-2019:0641)NessusRed Hat Local Security Checks
high
121997Photon OS 2.0: Linux PHSA-2018-2.0-0101NessusPhotonOS Local Security Checks
high
119423Photon OS 2.0: Linux PHSA-2018-2.0-0101 (deprecated)NessusPhotonOS Local Security Checks
high
109881Oracle Linux 6 : Unbreakable Enterprise kernel (ELSA-2018-4110) (Meltdown) (Spectre)NessusOracle Linux Local Security Checks
high
109829Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4109) (Meltdown) (Spectre)NessusOracle Linux Local Security Checks
high
109668OracleVM 3.3 : Unbreakable / etc (OVMSA-2018-0041) (Spectre)NessusOracleVM Local Security Checks
high
109158OracleVM 3.4 : Unbreakable / etc (OVMSA-2018-0035) (Dirty COW) (Meltdown) (Spectre)NessusOracleVM Local Security Checks
high
109156Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4071) (Dirty COW) (Meltdown) (Spectre)NessusOracle Linux Local Security Checks
high
107052Oracle Linux 6 : Unbreakable Enterprise kernel (ELSA-2018-4041)NessusOracle Linux Local Security Checks
high
107051Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4040)NessusOracle Linux Local Security Checks
high
105461SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:3410-1)NessusSuSE Local Security Checks
high
105460SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:3398-1)NessusSuSE Local Security Checks
high
105364openSUSE Security Update : the Linux Kernel (openSUSE-2017-1391) (Dirty COW)NessusSuSE Local Security Checks
high
105344openSUSE Security Update : the Linux Kernel (openSUSE-2017-1390) (Dirty COW)NessusSuSE Local Security Checks
high
105248OracleVM 3.4 : Unbreakable / etc (OVMSA-2017-0174) (BlueBorne) (Dirty COW) (Stack Clash)NessusOracleVM Local Security Checks
high
105247Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3659) (BlueBorne) (Dirty COW) (Stack Clash)NessusOracle Linux Local Security Checks
high
104453OracleVM 3.4 : Unbreakable / etc (OVMSA-2017-0167)NessusOracleVM Local Security Checks
high
104374SUSE SLES12 Security Update : kernel (SUSE-SU-2017:2920-1) (KRACK) (Stack Clash)NessusSuSE Local Security Checks
critical
104369Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3635)NessusOracle Linux Local Security Checks
high
104271SUSE SLES12 Security Update : kernel (SUSE-SU-2017:2908-1) (KRACK) (Stack Clash)NessusSuSE Local Security Checks
critical
103363Debian DLA-1099-1 : linux security update (BlueBorne) (Stack Clash)NessusDebian Local Security Checks
high
103354SUSE SLES11 Security Update : kernel (SUSE-SU-2017:2525-1) (Stack Clash)NessusSuSE Local Security Checks
critical
103110SUSE SLES11 Security Update : kernel (SUSE-SU-2017:2389-1) (Stack Clash)NessusSuSE Local Security Checks
high
102550Debian DSA-3945-1 : linux - security update (Stack Clash)NessusDebian Local Security Checks
high
102525Ubuntu 14.04 LTS : linux-lts-xenial regression (USN-3392-2) (Stack Clash)NessusUbuntu Local Security Checks
high
102524Ubuntu 16.04 LTS : linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon regression (USN-3392-1) (Stack Clash)NessusUbuntu Local Security Checks
high
102261Ubuntu 14.04 LTS : linux vulnerabilities (USN-3381-1) (Stack Clash)NessusUbuntu Local Security Checks
high
102211Debian DSA-3927-1 : linux - security update (Stack Clash)NessusDebian Local Security Checks
high
102198Ubuntu 14.04 LTS : linux-lts-xenial vulnerabilities (USN-3378-2) (Stack Clash)NessusUbuntu Local Security Checks
high
102197Ubuntu 16.04 LTS : linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities (USN-3378-1) (Stack Clash)NessusUbuntu Local Security Checks
high
102196Ubuntu 16.04 LTS : linux-hwe vulnerabilities (USN-3377-2) (Stack Clash)NessusUbuntu Local Security Checks
high
102195Ubuntu 17.04 : linux, linux-raspi2 vulnerabilities (USN-3377-1) (Stack Clash)NessusUbuntu Local Security Checks
high
101206Slackware 14.0 : Slackware 14.0 kernel (SSA:2017-184-01) (Stack Clash)NessusSlackware Local Security Checks
high
101170Slackware 14.2 / current : kernel (SSA:2017-181-02) (Stack Clash)NessusSlackware Local Security Checks
high